<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 06:13:22 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:8419 — Low: python36:3.6 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:8419</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: python-nose-docs, AlmaLinux:8: python-pymongo-doc, AlmaLinux:8: python-sqlalchemy-doc, AlmaLinux:8: python-virtualenv-doc, AlmaLinux:8: python3-PyMySQL, AlmaLinux:8: python3-bson, AlmaLinux:8: python3-distro, AlmaLinux:8: python3-docs, AlmaLinux:8: python3-docutils, AlmaLinux:8: python3-nose and 12 more&lt;/p&gt;
&lt;p&gt;Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* python-pymongo: Out-of-bounds read in bson module (CVE-2024-5629)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: python-nose-docs, AlmaLinux:8: python-pymongo-doc, AlmaLinux:8: python-sqlalchemy-doc, AlmaLinux:8: python-virtualenv-doc, AlmaLinux:8: python3-PyMySQL, AlmaLinux:8: python3-bson, AlmaLinux:8: python3-distro, AlmaLinux:8: python3-docs, AlmaLinux:8: python3-docutils, AlmaLinux:8: python3-nose and 12 more&lt;/p&gt;
&lt;p&gt;Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* python-pymongo: Out-of-bounds read in bson module (CVE-2024-5629)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:8419</guid>
    </item>
    <item>
      <title>bdu:2024-04925</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-04925</link>
      <description>bdu:2024-04925</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-04925</guid>
    </item>
    <item>
      <title>BREW-mongo-orchestration-CVE-2024-5629 — PyMongo Out-of-bounds Read in the bson module</title>
      <link>https://cve.radiocsirt.org/vuln/brew-mongo-orchestration-cve-2024-5629</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: mongo-orchestration&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Homebrew: mongo-orchestration&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/brew-mongo-orchestration-cve-2024-5629</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0465 — Une vulnérabilité a été découverte dans MongoDB PyMongo. Elle permet à un attaquant de provoquer une atteinte à la conf…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0465</link>
      <description>certfr-2024-avi-0465</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0465</guid>
    </item>
    <item>
      <title>EUVD-2026-217491</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-217491</link>
      <description>EUVD-2026-217491</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-217491</guid>
    </item>
    <item>
      <title>fkie_cve-2024-5629</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-5629</link>
      <description>&lt;p&gt;An out-of-bounds read in the &amp;#39;bson&amp;#39; module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An out-of-bounds read in the &amp;#39;bson&amp;#39; module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-5629</guid>
    </item>
    <item>
      <title>GHSA-m87m-mmvp-v9qm — PyMongo Out-of-bounds Read in the bson module</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m87m-mmvp-v9qm</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: pymongo&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: pymongo&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m87m-mmvp-v9qm</guid>
    </item>
    <item>
      <title>PYSEC-2026-1826 — PyMongo Out-of-bounds Read in the bson module</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2026-1826</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: pymongo&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: pymongo&lt;/p&gt;
&lt;p&gt;Versions of the package pymongo before 4.6.3 are vulnerable to Out-of-bounds Read in the bson module. Using the crafted payload the attacker could force the parser to deserialize unmanaged memory. The parser tries to interpret bytes next to buffer and throws an exception with string. If the following bytes are not printable UTF-8 the parser throws an exception with a single byte.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2026-1826</guid>
    </item>
    <item>
      <title>RHSA-2025:8419 — Red Hat Security Advisory: python36:3.6 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:8419</link>
      <description>&lt;p&gt;python-pymongo: Out-of-bounds read in bson module&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;python-pymongo: Out-of-bounds read in bson module&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:8419</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-5629</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-5629</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: pymongo, Ubuntu:Pro:16.04:LTS: pymongo, Ubuntu:Pro:18.04:LTS: pymongo, Ubuntu:20.04:LTS: pymongo, Ubuntu:22.04:LTS: pymongo, Ubuntu:24.04:LTS: pymongo&lt;/p&gt;
&lt;p&gt;An out-of-bounds read in the &amp;#39;bson&amp;#39; module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: pymongo, Ubuntu:Pro:16.04:LTS: pymongo, Ubuntu:Pro:18.04:LTS: pymongo, Ubuntu:20.04:LTS: pymongo, Ubuntu:22.04:LTS: pymongo, Ubuntu:24.04:LTS: pymongo&lt;/p&gt;
&lt;p&gt;An out-of-bounds read in the &amp;#39;bson&amp;#39; module of PyMongo 4.6.2 or earlier allows deserialization of malformed BSON provided by a Server to raise an exception which may contain arbitrary application memory.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-5629</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1217 — Red Hat Enterprise Linux pymongo: Schwachstelle ermöglicht Denial of Service und Offenlegung</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1217</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen oder Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen oder Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1217</guid>
    </item>
  </channel>
</rss>
