Описание
ELSA-2026-27862: memcached security update (IMPORTANT)
[0:1.6.9-7.1]
- Fix timing side-channel in SASL password database authentication (CVE-2026-47783)
- Resolves: RHEL-179093
Обновленные пакеты
Oracle Linux 9
Oracle Linux aarch64
memcached
1.6.9-7.el9_8.1
memcached-selinux
1.6.9-7.el9_8.1
Oracle Linux x86_64
memcached
1.6.9-7.el9_8.1
memcached-selinux
1.6.9-7.el9_8.1
Связанные CVE
Связанные уязвимости
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
In memcached before 1.6.42, username data for SASL password database a ...