rpm package
suse/memcached&distro=SUSE Linux Enterprise Server for SAP Applications 12 SP4
pkg:rpm/suse/memcached&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP4
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2019-15026 | — | < 1.4.39-4.11.2 | 1.4.39-4.11.2 | Aug 30, 2019 | memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c. | ||
| CVE-2019-11596 | — | < 1.4.39-4.11.2 | 1.4.39-4.11.2 | Apr 29, 2019 | In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl" commands. This causes a denial of service when parsing crafted lru command messages in process_lru_command in memcached.c. |
- CVE-2019-15026Aug 30, 2019affected < 1.4.39-4.11.2fixed 1.4.39-4.11.2
memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c.
- CVE-2019-11596Apr 29, 2019affected < 1.4.39-4.11.2fixed 1.4.39-4.11.2
In memcached before 1.5.14, a NULL pointer dereference was found in the "lru mode" and "lru temp_ttl" commands. This causes a denial of service when parsing crafted lru command messages in process_lru_command in memcached.c.