The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, schema, or object name to a metadata retrieval function. This may result in memory corruption within the calling application's process, leading to abnormal termination and, under certain conditions, the potential for arbitrary code execution.
References
| Link | Resource |
|---|---|
| https://github.com/mongodb/mongo-bi-connector-odbc-driver/releases/tag/v1.4.9 | Vendor Advisory Release Notes |
Configurations
History
No history.
Information
Published : 2026-08-12 21:17
Updated : 2026-09-11 18:53
NVD link : CVE-2026-19001
Mitre link : CVE-2026-19001
CVE.ORG link : CVE-2026-19001
JSON object : View
Products Affected
mongodb
- bi_connector_odbc_driver
CWE
CWE-190
Integer Overflow or Wraparound
