CVE-2010-1152
published 2010-04-12CVE-2010-1152: memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive…
PriorityP426medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
10.44%
95.2th percentile
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | memcached | < memcached 1.4.5-1 (bookworm) | memcached 1.4.5-1 (bookworm) |
| memcached | memcached | >= 0 < 1.4.5-1 | 1.4.5-1 |
| memcached | memcached | >= 0 < 1.4.5-1 | 1.4.5-1 |
| memcached | memcached | >= 0 < 1.4.5-1 | 1.4.5-1 |
| memcached | memcached | >= 0 < 1.4.5-1 | 1.4.5-1 |
| memcachedb | memcached | <= 1.4.2 | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
| memcachedb | memcached | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0LOW
vendor_redhat5.0MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jp9p-pjv6-qv68: memcached
ghsa_unreviewed·2022-05-02
CVE-2010-1152 [MEDIUM] CWE-20 GHSA-jp9p-pjv6-qv68: memcached
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
OSV
CVE-2010-1152: memcached
osv·2010-04-12·CVSS 5.0
CVE-2010-1152 [MEDIUM] CVE-2010-1152: memcached
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
Debian
CVE-2010-1152: memcached - memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial ...
vendor_debian·2010·CVSS 5.0
CVE-2010-1152 [MEDIUM] CVE-2010-1152: memcached - memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial ...
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.4.5-1)
bullseye: resolved (fixed in 1.4.5-1)
forky: resolved (fixed in 1.4.5-1)
sid: resolved (fixed in 1.4.5-1)
trixie: resolved (fixed in 1.4.5-1)
Red Hat
(v1.2.8): Remote denial of service (excessive memory use, hang / crash)
vendor_redhat·2009-10-27·CVSS 5.0
CVE-2010-1152 [MEDIUM] (v1.2.8): Remote denial of service (excessive memory use, hang / crash)
(v1.2.8): Remote denial of service (excessive memory use, hang / crash)
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
No detection rules found.
http://blogs.sun.com/security/entry/input_validation_vulnerability_in_memcachedhttp://code.google.com/p/memcached/issues/detail?id=102http://github.com/memcached/memcached/commit/75cc83685e103bc8ba380a57468c8f04413033f9http://github.com/memcached/memcached/commit/d9cd01ede97f4145af9781d448c62a3318952719http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://marc.info/?l=oss-security&m=127074597129559&w=2http://marc.info/?l=oss-security&m=127075341110616&w=2http://marc.info/?l=oss-security&m=127075808518733&w=2http://secunia.com/advisories/39306http://securitytracker.com/id?1023839http://www.vupen.com/english/advisories/2011/0442http://blogs.sun.com/security/entry/input_validation_vulnerability_in_memcachedhttp://code.google.com/p/memcached/issues/detail?id=102http://github.com/memcached/memcached/commit/75cc83685e103bc8ba380a57468c8f04413033f9http://github.com/memcached/memcached/commit/d9cd01ede97f4145af9781d448c62a3318952719http://lists.opensuse.org/opensuse-security-announce/2010-05/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://marc.info/?l=oss-security&m=127074597129559&w=2http://marc.info/?l=oss-security&m=127075341110616&w=2http://marc.info/?l=oss-security&m=127075808518733&w=2http://secunia.com/advisories/39306http://securitytracker.com/id?1023839http://www.vupen.com/english/advisories/2011/0442
2010-04-12
Published