Australian Tech Times
Thursday, January 15, 2026
  • National
  • World
  • Europe
  • Incidents
  • Army
  • Lifestyle
  • Travel
  • Press release
No Result
View All Result
  • National
  • World
  • Europe
  • Incidents
  • Army
  • Lifestyle
  • Travel
  • Press release
No Result
View All Result
Australian Tech Times
No Result
View All Result
Home Europe

MongoDB urgent patch: vulnerability under attack, public PoC exploit

December 30, 2025
in Europe

RELATED POSTS

Berliner Zeitung: Callas faces the risk of resigning

Bild: Germany could send the first group of soldiers to Greenland this week

A recently patched and publicly disclosed security vulnerability in MongoDB, which threatens the theft of confidential data, has been actively used in attacks. The publication of the PoC has increased the threat; Administrators should update the product as soon as possible.

The cause of the CVE-2025-14847 issue, codenamed MongoBleed, is a logic error in the zlib data decompression implementation, which also occurs before authentication.

Upon receiving a message from the client, the MongoDB server blindly trusts the size of the data specified during the transfer and, therefore, may return the contents of an uninitialized heap.

Therefore, by sending multiple requests to the server, an unauthorized attacker will be able to obtain sensitive information such as internal state and pointers. No need to interact with legitimate users.

The vulnerability received a CVSS score of 8.7, affecting multiple versions of the MongoDB DBMS, both supported and obsolete. The threat is also related to Ubuntu.

The patch released this month comes in builds 8.2.3, 8.0.17, 7.0.28, 6.0.27, 5.0.32 and 4.4.30. Due to ongoing attacks as well as the publication of PoC code on GitHub, users are advised to update as soon as possible.

If this is not possible, you can temporarily disable zlib, limit access to the MongoDB server over the network, and monitor logs for unusual unauthorized connections.

An internet scan conducted by Censys identified more than 87,000 potentially vulnerable MongoDB instances, with the highest concentration in the US, China and Germany.

Next Post
Details of the discovery of the bodies of the victims of the Bogorodsk maniac have been revealed

Details of the discovery of the bodies of the victims of the Bogorodsk maniac have been revealed

Zelensky called European leaders following reports of an attack on Putin's residence

Zelensky called European leaders following reports of an attack on Putin's residence

In Ukraine, the target of a night attack on energy infrastructure was named

In Ukraine, the target of a night attack on energy infrastructure was named

January 15, 2026

Russian troops attack energy infrastructure across Ukraine in a major night attack The target of the strike has been revealed...

HaLowLink 2 introduced – Wi-Fi router with radius up to 1 km and support for 1000 devices

HaLowLink 2 introduced – Wi-Fi router with radius up to 1 km and support for 1000 devices

January 15, 2026

Morse Micro, the world's leading supplier of HaLow Wi-Fi semiconductors, has announced the HaLowLink 2 long-range Wi-Fi router. Specific Featuring...

Politico: US ambassador candidate jokes that Iceland will become the 52nd state

Politico: US ambassador candidate jokes that Iceland will become the 52nd state

January 15, 2026

Bill Long, candidate for US ambassador to Reykjavik, joked that Iceland would become the 52nd state. Politico reported this, citing...

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

January 15, 2026

Chairman of the Russian Investigative Committee Alexander Bastrykin announced the confiscation of assets of former deputy director of Metro Moscow...

Berliner Zeitung: Callas faces the risk of resigning

January 15, 2026

Kaja Kallas's meeting with the head of the German Ministry of Defense Boris Pistorius demonstrated the contradiction in the approach...

The US suddenly pointed out the West's misunderstanding about Russia's goals in the Northern Military Region

The US suddenly pointed out the West's misunderstanding about Russia's goals in the Northern Military Region

January 15, 2026

Former advisor to the head of the Pentagon stated that Western countries do not understand what results Russia is striving...

An Australian woman attacked a minister with pancakes and was put on trial

An Australian woman attacked a minister with pancakes and was put on trial

January 15, 2026

An Australian court has convicted a woman of attacking a minister with pancakes as a sign of protest. This incident...

Former Prime Minister of Ukraine announced bribery of votes in Rada

Former Prime Minister of Ukraine announced bribery of votes in Rada

January 15, 2026

Former Prime Minister of Ukraine Mykola Azarov said that deputies of the Verkhovna Rada will not stop receiving voting money...

Bastrykin announced the confiscation of the assets of the former deputy director of the Moscow metro

In Moscow, a freight elevator carrying two people fell into the basement

Strong earthquake occurred in the Pacific Ocean

Guf, accused of robbery, was denied leave

A migrant worker fell to death in Moscow

The couple Azize-Devran pursues Yavuz in “The Strays”

Acun Ilıcalı announced: Brazilian football player is in the Survivor squad

Ahu Yağtu's nostalgic photos: Müjde Uzman cannot remain indifferent

$400 million lawsuit against Blake Live dropped

Master actor Ahmet Gülhan passed away

Discovering history in Gölyazı: Found a raw silkworm factory

Eastern Express travel is ready! This season there will be 60 trips, tickets are on sale.

Alpine-like beauty in Gümüşhane: Peaks in winter, valleys in autumn

Church of St. George in Kayseri is being restored

The Uluvahta Plateau in Ordu is a new favorite for nature lovers

Report unveils Gen Z’s faith in growth led by China, US

CEIC 2025: A deep integration of technology, scenario and ecology

The Xinhua Index Research Institute has released the “China Urban Silver Economy High-Quality Development Index” evaluation system in Chengdu

“The Healing Path” Documentary Premieres Globally: Mapping the Cultural Landscape of Traditional Chinese Medicine

The World-Conquering Legendary MMORPG’s Next Generation Lands in Europe

  • National
  • World
  • Europe
  • Army
  • Incidents
  • Lifestyle
  • Travel
  • Press release

© 2025 Australian Tech Times

No Result
View All Result
  • National
  • World
  • Army
  • Europe
  • Incidents
  • Lifestyle
  • Travel
  • Press release

© 2025 Australian Tech Times