Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2013-7239

Disclosure Date: January 13, 2014 (last updated October 05, 2023)
memcached before 1.4.17 allows remote attackers to bypass authentication by sending an invalid request with SASL credentials, then sending another request with incorrect SASL credentials.
0
Attacker Value
Unknown

CVE-2013-7291

Disclosure Date: January 13, 2014 (last updated October 05, 2023)
memcached before 1.4.17, when running in verbose mode, allows remote attackers to cause a denial of service (crash) via a request that triggers an "unbounded key print" during logging, related to an issue that was "quickly grepped out of the source tree," a different vulnerability than CVE-2013-0179 and CVE-2013-7290.
0
Attacker Value
Unknown

CVE-2011-4971

Disclosure Date: December 12, 2013 (last updated October 05, 2023)
Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_append_prepend functions in Memcached 1.4.5 and earlier allow remote attackers to cause a denial of service (crash) via a large body length value in a packet.
0
Attacker Value
Unknown

CVE-2010-1152

Disclosure Date: April 12, 2010 (last updated November 08, 2023)
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
0