[CLSA-2026:1775686864] Fix CVE(s): CVE-2025-10060
Type:
security
Severity:
Important
Release date:
2026-04-08 22:21:09 UTC
Description:
* SECURITY UPDATE: Server crash when upsert is retried inside a multi-document transaction - debian/patches/CVE-2025-10060.patch: add inMultiDocumentTransaction() check to shouldRetryDuplicateKeyException() to prevent retry of duplicate key errors inside transactions, which corrupts WriteUnitOfWork state and causes a crash - CVE-2025-10060
Updated packages:
  • mongodb44_4.4.29-1+tuxcare.els4_amd64.deb
    sha:3ca9c334abecce2f42b46b0174f338c40a5e09ab
  • mongodb44-mongos_4.4.29-1+tuxcare.els4_amd64.deb
    sha:da97314ffdd52e2fc45361b08b2b750ed8e226bc
  • mongodb44-server_4.4.29-1+tuxcare.els4_amd64.deb
    sha:25e587f5b2d2b6726f9ad5c6581af3a74eed0606
  • mongodb44-shell_4.4.29-1+tuxcare.els4_amd64.deb
    sha:ad90c3abf31cb509e570be6ff4499faf24c6b178
  • mongodb44_4.4.29-1+tuxcare.els4_arm64.deb
    sha:bda8ede0b931097976b8080cca10117fbdb79f2c
  • mongodb44-mongos_4.4.29-1+tuxcare.els4_arm64.deb
    sha:8f89288269d681f0ff02d3a1603659890e47c180
  • mongodb44-server_4.4.29-1+tuxcare.els4_arm64.deb
    sha:b1d23e7c997cd82cf8a2496d0747827b51f88ba1
  • mongodb44-shell_4.4.29-1+tuxcare.els4_arm64.deb
    sha:c6ea3e62a70963f362381be098b955fcb3fbde13
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.