10

CVE-2009-2415

Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer overflows.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MemcachedbMemcached Version1.1.12
MemcachedbMemcached Version1.2.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 6.62% 0.93
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/56906
http://secunia.com/advisories/36133
http://secunia.com/advisories/37729
http://security.debian.org/pool/updates/main/m/memcached/memcached_1.1.12-1+etch1.diff.gz
http://security.debian.org/pool/updates/main/m/memcached/memcached_1.2.2-1+lenny1.diff.gz
http://www.debian.org/security/2009/dsa-1853
http://www.securityfocus.com/bid/35989
https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00836.html