High severity7.5NVD Advisory· Published Mar 13, 2018· Updated Jun 17, 2026
CVE-2018-1000127
CVE-2018-1000127
Description
memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks due to items existing in hash table being reused from free list. This attack appear to be exploitable via network connectivity to the memcached service. This vulnerability appears to have been fixed in 1.4.37 and later.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
6- github.com/memcached/memcached/commit/a8c4a82787b8b6c256d61bd5c42fb7f92d1bae00nvdPatchThird Party Advisory
- access.redhat.com/errata/RHSA-2018:2290nvdThird Party Advisory
- github.com/memcached/memcached/issues/271nvdThird Party Advisory
- lists.debian.org/debian-lts-announce/2018/03/msg00031.htmlnvdMailing ListThird Party Advisory
- usn.ubuntu.com/3601-1/nvdThird Party Advisory
- www.debian.org/security/2018/dsa-4218nvdThird Party Advisory
News mentions
0No linked articles in our index yet.