CVE-2024-6382

Incorrect handling of certain string inputs may result in MongoDB Rust driver constructing unintended server commands. This may cause unexpected application behavior including data modification. This issue affects MongoDB Rust Driver 2.0 versions prior to 2.8.2
References
Link Resource
https://jira.mongodb.org/browse/RUST-1881 Issue Tracking Vendor Advisory
https://jira.mongodb.org/browse/RUST-1881 Issue Tracking Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:mongodb:rust_driver:*:*:*:*:*:mongodb:*:*

History

02 Oct 2025, 13:35

Type Values Removed Values Added
References () https://jira.mongodb.org/browse/RUST-1881 - () https://jira.mongodb.org/browse/RUST-1881 - Issue Tracking, Vendor Advisory
First Time Mongodb rust Driver
Mongodb
CPE cpe:2.3:a:mongodb:rust_driver:*:*:*:*:*:mongodb:*:*

21 Nov 2024, 09:49

Type Values Removed Values Added
References () https://jira.mongodb.org/browse/RUST-1881 - () https://jira.mongodb.org/browse/RUST-1881 -

03 Jul 2024, 12:53

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-02 18:15

Updated : 2025-10-02 13:48


NVD link : CVE-2024-6382

Mitre link : CVE-2024-6382

CVE.ORG link : CVE-2024-6382


JSON object : View

Products Affected

mongodb

  • rust_driver
CWE
CWE-228

Improper Handling of Syntactically Invalid Structure