Описание
ELSA-2026-27842: memcached security update (IMPORTANT)
[0:1.6.23-7.1]
- Fix timing side-channel in SASL password database authentication (CVE-2026-47783)
- Resolves: RHEL-179083
Обновленные пакеты
Oracle Linux 10
Oracle Linux aarch64
memcached
1.6.23-7.el10_2.1
memcached-selinux
1.6.23-7.el10_2.1
Oracle Linux x86_64
memcached
1.6.23-7.el10_2.1
memcached-selinux
1.6.23-7.el10_2.1
Связанные CVE
Связанные уязвимости
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database a ...