CLSA-2026-1773757893

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2026-1773757893.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2026-1773757893
Upstream
Published
2026-03-17T14:31:37Z
Modified
2026-06-04T09:45:20.243062074Z
Summary
Fix CVE(s): CVE-2025-14847
Details
  • SECURITY UPDATE: Unauthenticated heap memory disclosure via mismatched zlib compressed protocol headers (MongoBleed)
    • debian/patches/CVE-2025-14847.patch: Return actual decompressed size instead of buffer size in ZlibMessageCompressor::decompressData
    • CVE-2025-14847
References

Affected packages

TuxCare:Ubuntu:18.04 / mongodb

Package

Name
mongodb
Purl
pkg:deb/tuxcare/mongodb?distro=ubuntu-18.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.6.3-0ubuntu1.4+tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2026-1773757893.json"

TuxCare:Ubuntu:18.04 / mongodb-clients

Package

Name
mongodb-clients
Purl
pkg:deb/tuxcare/mongodb-clients?distro=ubuntu-18.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.6.3-0ubuntu1.4+tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2026-1773757893.json"

TuxCare:Ubuntu:18.04 / mongodb-server

Package

Name
mongodb-server
Purl
pkg:deb/tuxcare/mongodb-server?distro=ubuntu-18.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.6.3-0ubuntu1.4+tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2026-1773757893.json"

TuxCare:Ubuntu:18.04 / mongodb-server-core

Package

Name
mongodb-server-core
Purl
pkg:deb/tuxcare/mongodb-server-core?distro=ubuntu-18.04

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:3.6.3-0ubuntu1.4+tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu18.04els/CLSA-2026-1773757893.json"