memcached: heap-based buffer overflow
| Package(s): | memcached |
CVE #(s): | CVE-2009-2415
|
| Created: | August 7, 2009 |
Updated: | December 11, 2009 |
| Description: |
From the Debian advisory:
Ronald Volgers discovered that memcached, a high-performance memory object
caching system, is vulnerable to several heap-based buffer overflows due
to integer conversions when parsing certain length attributes. An
attacker can use this to execute arbitrary code on the system running
memcached (on etch with root privileges).
|
| Alerts: |
| Gentoo |
201406-13 |
memcached |
2014-06-14 |
| Fedora |
FEDORA-2009-12552 |
memcached |
2009-12-03 |
| Mandriva |
MDVSA-2009:202 |
memcached |
2009-08-14 |
| SuSE |
SUSE-SR:2009:013 |
memcached, libtiff/libtiff3, nagios, libsndfile, gaim/finch, open-, strong, freeswan, libapr-util1, websphere-as_ce, libxml2 |
2009-08-11 |
| Debian |
DSA-1853-1 |
memcached |
2009-08-07 |
|