memcached: Integer Overflow in items.c:item_free()
Published Mar 13, 2018
7.5
HIGHCVSS 3.0
EPSS 2.27%
Description
memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks due to items existing in hash table being reused from free list. This attack appear to be exploitable via network connectivity to the memcached service. This vulnerability appears to have been fixed in 1.4.37 and later.
Affected products
No data.
Configuration 2
- 7.0
- 8.0
- 9.0
Configuration 3
- 14.04
- 16.04
- 17.10
No data.
Red Hat OpenStack Platform 10.0 (Newton)
memcached-0:1.4.39-2.el7ost
Fixed · RHSA-2018:2290
Red Hat Enterprise Linux 6
memcached
Will not fix
Red Hat Enterprise Linux 7
memcached
Will not fix
Red Hat Enterprise Linux 8
memcached
Not affected
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)
memcached
Will not fix
Red Hat Mobile Application Platform 4
rhmap-memcached-docker
Will not fix
Red Hat OpenStack Platform 11 (Ocata)
memcached
Will not fix
Red Hat OpenStack Platform 12 (Pike)
memcached
Not affected
Red Hat OpenStack Platform 13 (Queens)
memcached
Not affected
Red Hat OpenStack Platform 8 (Liberty)
memcached
Will not fix
Red Hat OpenStack Platform 9 (Mitaka)
memcached
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat OpenStack Platform 10.0 (Newton) | memcached-0:1.4.39-2.el7ost | Fixed | RHSA-2018:2290 |
| Red Hat Enterprise Linux 6 | memcached | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | memcached | Will not fix | n/a |
| Red Hat Enterprise Linux 8 | memcached | Not affected | n/a |
| Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) | memcached | Will not fix | n/a |
| Red Hat Mobile Application Platform 4 | rhmap-memcached-docker | Will not fix | n/a |
| Red Hat OpenStack Platform 11 (Ocata) | memcached | Will not fix | n/a |
| Red Hat OpenStack Platform 12 (Pike) | memcached | Not affected | n/a |
| Red Hat OpenStack Platform 13 (Queens) | memcached | Not affected | n/a |
| Red Hat OpenStack Platform 8 (Liberty) | memcached | Will not fix | n/a |
| Red Hat OpenStack Platform 9 (Mitaka) | memcached | Will not fix | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
1 other source (Red Hat) ▾
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
AV:N/AC:L/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 4, 2026.
Score over time
2021-2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Table of values (11 key points)
Flat stretches are collapsed. Showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 4, 2026 | 2.27% (0.02265) | 82.42th | v5 (v2026.06.15) |
| Jun 15, 2026 | 2.32% (0.02316) | 81.13th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.85% (0.00851) | 73.31th | v4 (v2025.03.14) |
| Dec 17, 2024 | 0.61% (0.00606) | 78.40th | v3 (v2023.03.01) |
| Oct 7, 2023 | 1.02% (0.01018) | 82.06th | v3 (v2023.03.01) |
| Sep 3, 2023 | 1.29% (0.01294) | 84.16th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.60% (0.00599) | 75.11th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.11% (0.01108) | 55.18th | v2 (v2022.01.01) |
| Feb 4, 2022 | 1.11% (0.01108) | 29.61th | v2 (v2022.01.01) |
| Feb 3, 2022 | 1.66% (0.01659) | 34.20th | v5 (v2026.06.15) |
| Apr 14, 2021 | 1.66% (0.01659) | 0.00th | v1 |
References (11)
- https://access.redhat.com/errata/RHSA-2018:2290 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-1000127 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1555064 Issue Tracking
- https://github.com/memcached/memcached/commit/a8c4a82787b8b6c256d61bd5c42fb7f92d1bae00 x_refsource_CONFIRMPatchThird Party Advisory
- https://github.com/memcached/memcached/issues/271 x_refsource_CONFIRMThird Party Advisory
- https://github.com/memcached/memcached/wiki/ReleaseNotes1437 x_refsource_CONFIRMRelease NotesThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2018/03/msg00031.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000127
- https://usn.ubuntu.com/3601-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2018-1000127
- https://www.debian.org/security/2018/dsa-4218 vendor-advisoryx_refsource_DEBIANThird Party Advisory
Change history (0)
No recorded changes yet.