Skip to content

Mongo bleed cve202514847#776

Open
alessandro-Doyensec wants to merge 5 commits intogoogle:masterfrom
doyensec:mongo-bleed-cve202514847
Open

Mongo bleed cve202514847#776
alessandro-Doyensec wants to merge 5 commits intogoogle:masterfrom
doyensec:mongo-bleed-cve202514847

Conversation

@alessandro-Doyensec
Copy link
Collaborator

Detector for CVE-2025-14847.

Testbed at google/security-testbeds#182

Note:

In the POC a range between 20 and 8192 is used to probe MongoDB docLen. In this detector I used a range between 20 and 512 to speed up the detection process.

@leonardo-doyensec
Copy link
Collaborator

LGTM - Approved
@tooryx , this can be merged alongside with google/security-testbeds#182.

Reviewer: Leonardo, Doyensec
Plugin: CVE-2025-14847
Drawbacks: None.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants