rpm package
suse/memcached&distro=SUSE Linux Enterprise Module for Server Applications 15 SP1
pkg:rpm/suse/memcached&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP1
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-15026 | — | < 1.5.6-4.5.30 | 1.5.6-4.5.30 | Aug 30, 2019 | memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c. | ||
| CVE-2019-11596 | — | < 1.5.6-4.5.30 | 1.5.6-4.5.30 | Apr 29, 2019 | In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl" commands. This causes a denial of service when parsing crafted lru command messages in process_lru_command in memcached.c. |
- CVE-2019-15026Aug 30, 2019affected < 1.5.6-4.5.30fixed 1.5.6-4.5.30
memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c.
- CVE-2019-11596Apr 29, 2019affected < 1.5.6-4.5.30fixed 1.5.6-4.5.30
In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl" commands. This causes a denial of service when parsing crafted lru command messages in process_lru_command in memcached.c.