Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2011-4971Memcached vulnerability

CWE-18913 documents9 sources
Severity
5.0MEDIUMNVD
EPSS
46.1%
top 2.36%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedDec 12
Latest updateApr 21

Description

Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_append_prepend functions in Memcached 1.4.5 and earlier allow remote attackers to cause a denial of service (crash) via a large body length value in a packet.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/memcached< memcached 1.4.13-0.3 (bookworm)
Debianmemcached/memcached< 1.4.13-0.3+3
NVDmemcached/memcached1.4.5+7

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pj3v-4mjw-vvpv: Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_a2022-05-14
OSV
CVE-2011-4971: Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process_bin_complete_sasl_auth, (3) process_bin_update, and (4) process_bin_a2013-12-12

💥Exploits & PoCs

1
Metasploit
Memcached Remote Denial of Service

📋Vendor Advisories

3
Ubuntu
Memcached vulnerabilities2014-01-13
Red Hat
memcached: specially crafted packet segmentation fault2011-05-15
Debian
CVE-2011-4971: memcached - Multiple integer signedness errors in the (1) process_bin_sasl_auth, (2) process...2011

📄Research Papers

2
arXiv
Unlimited Lives: Secure In-Process Rollback with Isolated Domains2023-04-21
arXiv
Intel MPX Explained: An Empirical Study of Intel MPX and Software-based Bounds Checking Approaches2017-06-16

💬Community

4
Bugzilla
CVE-2011-4971 memcached: specially crafted packet segmentation fault [epel-6]2013-04-30
Bugzilla
CVE-2011-4971 memcached: specially crafted packet segmentation fault [epel-5]2013-04-30
Bugzilla
CVE-2011-4971 memcached: specially crafted packet segmentation fault [fedora-all]2013-04-30
Bugzilla
CVE-2011-4971 memcached: specially crafted packet segmentation fault2013-04-30