Unrated severityNVD Advisory· Published Apr 30, 2009· Updated Apr 23, 2026
CVE-2009-1494
CVE-2009-1494
Description
The process_stat function in Memcached 1.2.8 discloses memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain potentially sensitive information by sending this command to the daemon's TCP port.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- code.google.com/p/memcachedb/source/detailnvdPatch
- code.google.com/p/memcachedb/source/diffnvdPatch
- groups.google.com/group/memcached/browse_thread/thread/ff96a9b88fb5d40envdPatch
- code.google.com/p/memcachedb/source/browse/trunk/ChangeLognvd
- memcached.googlecode.com/files/memcached-1.2.8.tar.gznvd
- exchange.xforce.ibmcloud.com/vulnerabilities/50444nvd
News mentions
0No linked articles in our index yet.