First published: Fri Oct 27 2023(Updated: )
In Memcached before 1.6.22, an off-by-one error exists when processing proxy requests in proxy mode, if \n is used instead of \r\n.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Memcached Memcached | <1.6.22 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-46853.
CVE-2023-46853 has a severity rating of critical.
CVE-2023-46853 affects Memcached versions up to but excluding 1.6.22.
The CWE ID associated with CVE-2023-46853 is CWE-193.
To fix this vulnerability, update Memcached to version 1.6.22 or later.