The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://jira.mongodb.org/browse/SERVER-124959 |
|
History
Tue, 09 Jun 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The $_internalApplyOplogUpdate aggregation pipeline stage can be used to execute a document diff containing a malformed binary diff to return memory out-of-bounds or crash the server. $_internalApplyOplogUpdate can be executed by any authenticated user with access to the aggregate command. | |
| Title | Server crash via malformed binary diff passed to $_internalApplyOplogUpdate. | |
| Weaknesses | CWE-1287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mongodb
Published:
Updated: 2026-06-09T22:35:54.145Z
Reserved: 2026-05-27T17:49:08.204Z
Link: CVE-2026-9753
No data.
Status : Received
Published: 2026-06-09T23:17:04.897
Modified: 2026-06-09T23:17:04.897
Link: CVE-2026-9753
No data.
OpenCVE Enrichment
Updated: 2026-06-10T00:30:17Z
Weaknesses