MongoDB Denial of Service Vulnerability in Ubuntu 14.04 LTS

MongoDB Denial of Service Vulnerability in Ubuntu 14.04 LTS

First seen 26 Feb 2026, 03:10 UTC UbuntuLinuxsecurity 34.3

Article Content

Browse articles
ThreatCluster

A major denial of service vulnerability has been identified in MongoDB affecting Ubuntu 14.04 LTS. Discovered by Eliot Horowitz, the issue arises from MongoDB's failure to validate malformed BSON, allowing remote attackers to crash the database. Additionally, sensitive information could be exposed due to improper permission handling in .dbshell history files, impacting both Ubuntu 14.04 LTS and 16.04 LTS.

Timeline

2015-03-30
CVE-2015-1609 published
2016-10-03
CVE-2016-6494 published
2020-11-23
CVE-2018-20802 published
2026-02-25
Security issues fixed in MongoDB for Ubuntu releases