Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Memcached HIGH 8.1
CVE-2026-47783

In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid…

Fix: 1.6.42+
Fix from $1,950 2026-05-20
Memcached HIGH 8.1
CVE-2026-47784

In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_u…

Fix: 1.6.42+
Fix from $1,950 2026-05-20
Memcached CRITICAL 9.8
CVE-2023-46853

In Memcached before 1.6.22, an off-by-one error exists when processing proxy requests in proxy mode, if \n is used instead of \r\n.

Fix: 1.6.22+
Fix from $2,300 2023-10-27
Memcached HIGH 7.5
CVE-2023-46852

In Memcached before 1.6.22, a buffer overflow exists when processing multiget requests in proxy mode, if there are many spaces after the "get" substr…

Fix: 1.6.22+
Fix from $1,950 2023-10-27
Memcached HIGH 7.5
CVE-2022-48571

memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP.

Patch available
Fix from $1,950 2023-08-22
Memcached HIGH 7.5
CVE-2020-22570

Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted meta command.

Fix: 1.6.3+
Fix from $1,950 2023-08-22
Memcached MEDIUM 5.5
CVE-2021-37519

Buffer Overflow vulnerability in authfile.c memcached 1.6.9 allows attackers to cause a denial of service via crafted authenticattion file.

Patch available
Fix from $1,600 2023-02-03
Memcached HIGH 7.5
CVE-2020-10931EPSS 28%

Memcached 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted binary protocol header to try_read_com…

Fix: 1.6.2+
Fix from $1,950 2020-03-24
Memcached HIGH 7.5
CVE-2019-15026

memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c.

Patch available
Fix from $1,950 2019-08-30
Memcached HIGH 7.5
CVE-2017-9951

The try_read_command function in memcached.c in memcached before 1.4.39 allows remote attackers to cause a denial of service (segmentation fault) via…

Fix: after 1.4.38
Fix from $1,950 2017-07-17
Memcached CRITICAL 9.8
CVE-2016-8704EPSS 23%

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binar…

Fix: after 1.4.31
Fix from $2,300 2017-01-06
Memcached CRITICAL 9.8
CVE-2016-8705EPSS 20%

Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple commands of Memcached binary pro…

Fix: after 1.4.31
Fix from $2,300 2017-01-06
Memcached HIGH 8.1
CVE-2016-8706EPSS 46%

An integer overflow in process_bin_sasl_auth function in Memcached, which is responsible for authentication commands of Memcached binary protocol, ca…

Fix: after 1.4.31
Fix from $1,950 2017-01-06
Memcached MEDIUM 5.0
CVE-2011-4971EPSS 22%

Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_…

Fix: after 1.4.5
Fix from $1,600 2013-12-12