memcached: multiple vulnerabilities
| Package(s): | memcached | CVE #(s): | CVE-2013-7239 CVE-2013-0179 | ||||||||||||||||||||||||||||||||||||||||
| Created: | January 1, 2014 | Updated: | February 3, 2014 | ||||||||||||||||||||||||||||||||||||||||
| Description: | From the Debian advisory:
CVE-2011-4971: Stefan Bucur reported that memcached could be caused to crash by sending a specially crafted packet. CVE-2013-7239: It was reported that SASL authentication could be bypassed due to a flaw related to the management of the SASL authentication state. With a specially crafted request, a remote attacker may be able to authenticate with invalid SASL credentials. | ||||||||||||||||||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||||||||||||||||||
