memcached: SASL authentication remote code execution
Published Jan 6, 2017
8.1
HIGHCVSS 3.0
EPSS 45.70%
Description
An integer overflow in process_bin_sasl_auth function in Memcached, which is responsible for authentication commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.
Affected products
-
- Version 1.4.31StatusaffectedConstraints-
- Version
No data.
Red Hat Enterprise Linux 7
memcached-0:1.4.15-10.el7_3.1
Fixed · RHSA-2016:2819
Red Hat Enterprise Linux 6
memcached
Not affected
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)
memcached
Not affected
Red Hat Mobile Application Platform 4
memcached
Not affected
Red Hat OpenStack Platform 10 (Newton)
memcached
Not affected
Red Hat OpenStack Platform 8 (Liberty)
memcached
Not affected
Red Hat OpenStack Platform 9 (Mitaka)
memcached
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | memcached-0:1.4.15-10.el7_3.1 | Fixed | RHSA-2016:2819 |
| Red Hat Enterprise Linux 6 | memcached | Not affected | n/a |
| Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) | memcached | Not affected | n/a |
| Red Hat Mobile Application Platform 4 | memcached | Not affected | n/a |
| Red Hat OpenStack Platform 10 (Newton) | memcached | Not affected | n/a |
| Red Hat OpenStack Platform 8 (Liberty) | memcached | Not affected | n/a |
| Red Hat OpenStack Platform 9 (Mitaka) | memcached | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The version of memcached as shipped with Red Hat OpenStack Platform 9 is affected by this issue however will not be updated. The latest version of memcached from Red Hat Enterprise Linux 7 can safely be allowed to supersede the earlier versions provided in the Red Hat OpenStack Platform channels.
Red Hat mitigation
This flaw requires memcached to be running with SASL authentication enabled, which is not the default setting. If your memcached instances are running without the "-S" command-line option, they are not vulnerable.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
AV:N/AC:M/Au:N/C:P/I:P/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (58 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 45.70% (0.45703) | 98.76th | v5 (v2026.06.15) |
| Jun 15, 2026 | 45.70% (0.45703) | 98.64th | v5 (v2026.06.15) |
| Jun 13, 2026 | 73.67% (0.73672) | 98.84th | v4 (v2025.03.14) |
| Jun 4, 2026 | 60.26% (0.60255) | 98.31th | v4 (v2025.03.14) |
| Apr 4, 2026 | 51.79% (0.51793) | 97.89th | v4 (v2025.03.14) |
| Mar 12, 2026 | 73.67% (0.73672) | 98.79th | v4 (v2025.03.14) |
| Mar 4, 2026 | 68.63% (0.68629) | 98.58th | v4 (v2025.03.14) |
| Mar 1, 2026 | 66.29% (0.66290) | 98.50th | v4 (v2025.03.14) |
| Feb 4, 2026 | 68.63% (0.68629) | 98.57th | v4 (v2025.03.14) |
| Feb 1, 2026 | 66.29% (0.66290) | 98.49th | v4 (v2025.03.14) |
| Jan 20, 2026 | 68.63% (0.68629) | 98.56th | v4 (v2025.03.14) |
| Jan 18, 2026 | 64.22% (0.64223) | 98.38th | v4 (v2025.03.14) |
| Jan 4, 2026 | 68.63% (0.68629) | 98.56th | v4 (v2025.03.14) |
| Jan 1, 2026 | 66.29% (0.66290) | 98.47th | v4 (v2025.03.14) |
| Dec 4, 2025 | 68.63% (0.68629) | 98.54th | v4 (v2025.03.14) |
| Dec 1, 2025 | 66.29% (0.66290) | 98.46th | v4 (v2025.03.14) |
| Nov 4, 2025 | 68.63% (0.68629) | 98.54th | v4 (v2025.03.14) |
| Nov 1, 2025 | 66.29% (0.66290) | 98.46th | v4 (v2025.03.14) |
| Oct 4, 2025 | 68.63% (0.68629) | 98.56th | v4 (v2025.03.14) |
| Oct 1, 2025 | 66.29% (0.66290) | 98.48th | v4 (v2025.03.14) |
| Sep 4, 2025 | 68.63% (0.68629) | 98.57th | v4 (v2025.03.14) |
| Sep 1, 2025 | 66.29% (0.66290) | 98.48th | v4 (v2025.03.14) |
| Aug 4, 2025 | 68.63% (0.68629) | 98.54th | v4 (v2025.03.14) |
| Aug 1, 2025 | 66.29% (0.66290) | 98.47th | v4 (v2025.03.14) |
| Jul 23, 2025 | 68.63% (0.68629) | 98.53th | v4 (v2025.03.14) |
| Jul 5, 2025 | 60.26% (0.60255) | 98.16th | v4 (v2025.03.14) |
| Jul 1, 2025 | 64.35% (0.64354) | 98.34th | v4 (v2025.03.14) |
| Jun 19, 2025 | 60.26% (0.60255) | 98.14th | v4 (v2025.03.14) |
| Jun 4, 2025 | 68.63% (0.68629) | 98.51th | v4 (v2025.03.14) |
| Jun 1, 2025 | 66.29% (0.66290) | 98.42th | v4 (v2025.03.14) |
| May 27, 2025 | 68.63% (0.68629) | 98.50th | v4 (v2025.03.14) |
| May 15, 2025 | 60.26% (0.60255) | 98.13th | v4 (v2025.03.14) |
| May 4, 2025 | 73.67% (0.73672) | 98.72th | v4 (v2025.03.14) |
| May 1, 2025 | 71.68% (0.71681) | 98.64th | v4 (v2025.03.14) |
| Apr 20, 2025 | 73.67% (0.73672) | 98.71th | v4 (v2025.03.14) |
| Apr 17, 2025 | 68.63% (0.68629) | 98.49th | v4 (v2025.03.14) |
| Apr 16, 2025 | 66.29% (0.66290) | 98.39th | v4 (v2025.03.14) |
| Apr 13, 2025 | 68.63% (0.68629) | 98.52th | v4 (v2025.03.14) |
| Apr 12, 2025 | 66.29% (0.66290) | 98.41th | v4 (v2025.03.14) |
| Mar 30, 2025 | 68.63% (0.68629) | 98.51th | v4 (v2025.03.14) |
| Mar 29, 2025 | 88.83% (0.88828) | 99.41th | v4 (v2025.03.14) |
| Mar 24, 2025 | 68.63% (0.68629) | 98.54th | v4 (v2025.03.14) |
| Mar 23, 2025 | 86.98% (0.86980) | 99.39th | v4 (v2025.03.14) |
| Mar 22, 2025 | 68.63% (0.68629) | 98.55th | v4 (v2025.03.14) |
| Mar 21, 2025 | 66.29% (0.66290) | 98.44th | v4 (v2025.03.14) |
| Mar 17, 2025 | 68.63% (0.68629) | 98.51th | v4 (v2025.03.14) |
| Dec 17, 2024 | 80.92% (0.80918) | 98.58th | v3 (v2023.03.01) |
| Jun 18, 2024 | 88.74% (0.88743) | 98.73th | v3 (v2023.03.01) |
| May 15, 2024 | 89.16% (0.89163) | 98.72th | v3 (v2023.03.01) |
| Feb 29, 2024 | 90.00% (0.89998) | 98.69th | v3 (v2023.03.01) |
| Dec 10, 2023 | 91.61% (0.91612) | 98.65th | v3 (v2023.03.01) |
| Nov 20, 2023 | 90.29% (0.90293) | 98.50th | v3 (v2023.03.01) |
| Jul 3, 2023 | 83.70% (0.83697) | 97.97th | v3 (v2023.03.01) |
| Apr 12, 2023 | 86.66% (0.86659) | 98.02th | v3 (v2023.03.01) |
| Mar 7, 2023 | 89.00% (0.88996) | 98.08th | v3 (v2023.03.01) |
| Mar 6, 2023 | 6.91% (0.06908) | 92.19th | v2 (v2022.01.01) |
| Apr 1, 2022 | 6.91% (0.06908) | 91.45th | v2 (v2022.01.01) |
| Feb 4, 2022 | 6.91% (0.06908) | 79.67th | v2 (v2022.01.01) |
References (10)
- http://rhn.redhat.com/errata/RHSA-2016-2819.html vendor-advisoryx_refsource_REDHAT
- http://www.debian.org/security/2016/dsa-3704 vendor-advisoryx_refsource_DEBIAN
- http://www.securityfocus.com/bid/94083 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1037333 vdb-entryx_refsource_SECTRACK
- http://www.talosintelligence.com/reports/TALOS-2016-0221/ x_refsource_MISCExploitTechnical DescriptionThird Party AdvisoryVDB Entry
- https://access.redhat.com/security/cve/CVE-2016-8706 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1390512 Issue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2016-8706
- https://security.gentoo.org/glsa/201701-12 vendor-advisoryx_refsource_GENTOO
- https://www.cve.org/CVERecord?id=CVE-2016-8706
| Link | Providers | Tags |
|---|---|---|
| http://rhn.redhat.com/errata/RHSA-2016-2819.html | vendor-advisoryx_refsource_REDHAT | |
| http://www.debian.org/security/2016/dsa-3704 | vendor-advisoryx_refsource_DEBIAN | |
| http://www.securityfocus.com/bid/94083 | vdb-entryx_refsource_BID | |
| http://www.securitytracker.com/id/1037333 | vdb-entryx_refsource_SECTRACK | |
| http://www.talosintelligence.com/reports/TALOS-2016-0221/ | x_refsource_MISCExploitTechnical DescriptionThird Party AdvisoryVDB Entry | |
| https://access.redhat.com/security/cve/CVE-2016-8706 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1390512 | Issue Tracking | |
| https://nvd.nist.gov/vuln/detail/CVE-2016-8706 | ||
| https://security.gentoo.org/glsa/201701-12 | vendor-advisoryx_refsource_GENTOO | |
| https://www.cve.org/CVERecord?id=CVE-2016-8706 |
Change history (0)
No recorded changes yet.