CVE-2009-2415: Buffer Overflow
Published Aug 10, 2009
·Updated
Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer overflows.
Affected Software
2 affected components
MemcacheDB Memcached=1.1.12
MemcacheDB Memcached=1.2.2
Event History
Aug 10, 2009
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-2415?
CVE-2009-2415 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2009-2415?
To fix CVE-2009-2415, upgrade Memcached to versions 1.1.13 or 1.2.3 or later.
3
What type of vulnerability is CVE-2009-2415?
CVE-2009-2415 is classified as an integer overflow vulnerability leading to heap-based buffer overflows.
4
Who is affected by CVE-2009-2415?
Users of Memcached versions 1.1.12 and 1.2.2 are affected by CVE-2009-2415.
5
Can CVE-2009-2415 be exploited remotely?
Yes, CVE-2009-2415 can be exploited remotely by attackers to execute arbitrary code.