VYPR
Unrated severityNVD Advisory· Published Nov 3, 2025· Updated Nov 3, 2025

Malformed KMIP response may result in access violation

CVE-2025-12657

Description

The KMIP response parser built into mongo binaries is overly tolerant of certain malformed packets, and may parse them into invalid objects. Later reads of this object can result in read access violations.

Affected products

1
  • MongoDB Inc./MongoDB Serverv5
    Range: 6.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.