Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-8704

Опубликовано: 06 янв. 2017
Источник: debian
EPSS Средний

Описание

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
memcachedfixed1.4.33-1package

Примечания

  • http://www.talosintelligence.com/reports/TALOS-2016-0219/

  • upstream fix https://github.com/memcached/memcached/commit/bd578fc34b96abe0f8d99c1409814a09f51ee71c

EPSS

Процентиль: 98%
0.47384
Средний

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

CVSS3: 9.8
redhat
почти 9 лет назад

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

CVSS3: 9.8
nvd
больше 8 лет назад

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

CVSS3: 9.8
github
больше 3 лет назад

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

oracle-oval
почти 9 лет назад

ELSA-2016-2820: memcached security update (IMPORTANT)

EPSS

Процентиль: 98%
0.47384
Средний