Security Advisory

CVE-2026-19001

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-12 20:27:02
Last updated 2026-08-13 12:55:40
Assigner mongodb
CVSS score 9.8
State PUBLISHED

Description

The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, schema, or object name to a metadata retrieval function. This may result in memory corruption within the calling application's process, leading to abnormal termination and, under certain conditions, the potential for arbitrary code execution.