Insufficient validation of storage engine configuration options in MongoDB Server allows an authenticated user with write privileges to supply crafted parameters during collection creation that override internal storage metadata. This results in an out-of-bounds memory write in the server process, causing a denial of service via server crash, with potential for further impact including arbitrary code execution.
References
| Link | Resource |
|---|---|
| https://jira.mongodb.org/browse/SERVER-131860 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-08 17:18
Updated : 2026-09-08 19:20
NVD link : CVE-2026-82071
Mitre link : CVE-2026-82071
CVE.ORG link : CVE-2026-82071
JSON object : View
Products Affected
No product.
CWE
CWE-787
Out-of-bounds Write
