vendor:
Memcached
by:
Seebug
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Memcached
Affected Version From: 1.5.6
Affected Version To: 1.5.9
Patch Exists: YES
Related CWE: CVE-2018-1000115
CPE: 2.3:a:memcached:memcached
Metasploit:
https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/debian-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp2-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/alpine-linux-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp5-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/amazon_linux-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/oracle-solaris-cve-2018-1000115/, https://www.rapid7.com/db/vulnerabilities/memcached-cve-2018-1000115/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux, Mac, Windows
2018
Memcached Add Request Buffer Overflow
This exploit is a buffer overflow vulnerability in the Memcached add request. It allows an attacker to send a maliciously crafted add request to the server, which can cause a denial of service or potentially allow arbitrary code execution.
Mitigation:
Upgrade to the latest version of Memcached