CVE-2009-1494 PUBLISHED CVSS 5 MEDIUM

The process_stat function in Memcached 1.2.8 discloses memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain potentially sensitive information by sending this command to the daemon's TCP port.

EPSS 0.52% · 66.5th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
0.52%
66.5th percentile

Affected Products

VendorProductVersions
n/an/an/a
memcachedbmemcached1.2.8

Timeline

References

Open in Interactive Console →