CVE-2026-102639: Mobilitydb
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
MobilityDB version 1.3.0 and earlier contains an out-of-bounds read vulnerability in the MEOS binary and library WKB deserialization logic that allows unprivileged database users to crash the PostgreSQL backend process by supplying a crafted WKB payload with a negative length field. The negative length value wraps to a large unsigned size_t due to missing signed validation, bypasses an overflow-unsafe pointer arithmetic bounds check in wkb_parse_state_check(), and causes memcpy() in text_from_wkb_state() to operate with a corrupted unbounded length, resulting in a remote denial-of-service condition affecting all sessions on the PostgreSQL instance.
Affected products
- Mobilitydb Mobilitydb: from 1.1.0, up to and including 1.1.2; from 1.2.0, before 1.2.2 (fixed in 1.2.2); from 1.3.0, before 1.3.1 (fixed in 1.3.1)
Published 2026-09-29. Last modified 2026-10-02.