First published: Thu Jul 05 2018(Updated: )
`memjs` versions <= 1.1.0 allocates and stores buffers on typed input, resulting in DoS and uninitialized memory usage.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
npm/memjs | <=1.2.0 | |
Memcached | <=1.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-3767 has a high severity rating due to its potential to cause Denial of Service (DoS) attacks.
CVE-2018-3767 affects memjs versions 1.1.0 and lower.
To fix CVE-2018-3767, you should upgrade memjs to version 1.2.2 or later.
CVE-2018-3767 is classified as a Denial of Service (DoS) vulnerability.
Applications using vulnerable versions of memjs can experience service interruptions and uninitialized memory usage.