CVE-2011-4971

Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_append_prepend functions in Memcached 1.4.5 and earlier allow remote attackers to cause a denial of service (crash) via a large body length value in a packet.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:memcached:memcached:*:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.2.7:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.2.8:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.4.2:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.4.3:*:*:*:*:*:*:*
cpe:2.3:a:memcached:memcached:1.4.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-12-12 18:55

Updated : 2023-12-10 11:16


NVD link : CVE-2011-4971

Mitre link : CVE-2011-4971

CVE.ORG link : CVE-2011-4971


JSON object : View

Products Affected

memcached

  • memcached
CWE
CWE-189

Numeric Errors