Rapid7 Vulnerability & Exploit Database

SUSE Linux Security Advisory: SUSE-SR:2009:013

Back to Search

SUSE Linux Security Advisory: SUSE-SR:2009:013

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
08/10/2009
Created
07/25/2018
Added
12/12/2013
Modified
07/04/2017

Description

Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer overflows.

Solution(s)

  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-finch
  • suse-upgrade-finch-devel
  • suse-upgrade-freeswan
  • suse-upgrade-gaim
  • suse-upgrade-gaim-devel
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-libapr-util1
  • suse-upgrade-libapr-util1-32bit
  • suse-upgrade-libapr-util1-64bit
  • suse-upgrade-libapr-util1-dbd-mysql
  • suse-upgrade-libapr-util1-dbd-pgsql
  • suse-upgrade-libapr-util1-dbd-sqlite3
  • suse-upgrade-libapr-util1-devel
  • suse-upgrade-libapr-util1-devel-64bit
  • suse-upgrade-libpurple
  • suse-upgrade-libpurple-devel
  • suse-upgrade-libpurple-lang
  • suse-upgrade-libpurple-meanwhile
  • suse-upgrade-libpurple-mono
  • suse-upgrade-libsndfile
  • suse-upgrade-libsndfile-32bit
  • suse-upgrade-libsndfile-64bit
  • suse-upgrade-libsndfile-devel
  • suse-upgrade-libsndfile-octave
  • suse-upgrade-libsndfile-progs
  • suse-upgrade-libsndfile-x86
  • suse-upgrade-libtiff
  • suse-upgrade-libtiff-32bit
  • suse-upgrade-libtiff-64bit
  • suse-upgrade-libtiff-x86
  • suse-upgrade-libtiff3
  • suse-upgrade-libtiff3-32bit
  • suse-upgrade-libtiff3-64bit
  • suse-upgrade-libtiff3-x86
  • suse-upgrade-memcached
  • suse-upgrade-nagios
  • suse-upgrade-nagios-devel
  • suse-upgrade-nagios-www
  • suse-upgrade-openswan
  • suse-upgrade-openswan-doc
  • suse-upgrade-pidgin
  • suse-upgrade-pidgin-devel
  • suse-upgrade-strongswan
  • suse-upgrade-strongswan-doc
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-tomcat6
  • suse-upgrade-tomcat6-admin-webapps
  • suse-upgrade-tomcat6-docs-webapp
  • suse-upgrade-tomcat6-javadoc
  • suse-upgrade-tomcat6-jsp-2_1-api
  • suse-upgrade-tomcat6-lib
  • suse-upgrade-tomcat6-servlet-2_5-api
  • suse-upgrade-tomcat6-webapps
  • suse-upgrade-websphere-as_ce

References

  • suse-upgrade-apache-jakarta-tomcat-connectors
  • suse-upgrade-apache2-jakarta-tomcat-connectors
  • suse-upgrade-finch
  • suse-upgrade-finch-devel
  • suse-upgrade-freeswan
  • suse-upgrade-gaim
  • suse-upgrade-gaim-devel
  • suse-upgrade-jakarta-tomcat
  • suse-upgrade-jakarta-tomcat-doc
  • suse-upgrade-jakarta-tomcat-examples
  • suse-upgrade-libapr-util1
  • suse-upgrade-libapr-util1-32bit
  • suse-upgrade-libapr-util1-64bit
  • suse-upgrade-libapr-util1-dbd-mysql
  • suse-upgrade-libapr-util1-dbd-pgsql
  • suse-upgrade-libapr-util1-dbd-sqlite3
  • suse-upgrade-libapr-util1-devel
  • suse-upgrade-libapr-util1-devel-64bit
  • suse-upgrade-libpurple
  • suse-upgrade-libpurple-devel
  • suse-upgrade-libpurple-lang
  • suse-upgrade-libpurple-meanwhile
  • suse-upgrade-libpurple-mono
  • suse-upgrade-libsndfile
  • suse-upgrade-libsndfile-32bit
  • suse-upgrade-libsndfile-64bit
  • suse-upgrade-libsndfile-devel
  • suse-upgrade-libsndfile-octave
  • suse-upgrade-libsndfile-progs
  • suse-upgrade-libsndfile-x86
  • suse-upgrade-libtiff
  • suse-upgrade-libtiff-32bit
  • suse-upgrade-libtiff-64bit
  • suse-upgrade-libtiff-x86
  • suse-upgrade-libtiff3
  • suse-upgrade-libtiff3-32bit
  • suse-upgrade-libtiff3-64bit
  • suse-upgrade-libtiff3-x86
  • suse-upgrade-memcached
  • suse-upgrade-nagios
  • suse-upgrade-nagios-devel
  • suse-upgrade-nagios-www
  • suse-upgrade-openswan
  • suse-upgrade-openswan-doc
  • suse-upgrade-pidgin
  • suse-upgrade-pidgin-devel
  • suse-upgrade-strongswan
  • suse-upgrade-strongswan-doc
  • suse-upgrade-tomcat5
  • suse-upgrade-tomcat5-admin-webapps
  • suse-upgrade-tomcat5-webapps
  • suse-upgrade-tomcat55
  • suse-upgrade-tomcat55-admin-webapps
  • suse-upgrade-tomcat55-common-lib
  • suse-upgrade-tomcat55-jasper
  • suse-upgrade-tomcat55-jasper-javadoc
  • suse-upgrade-tomcat55-jsp-2_0-api
  • suse-upgrade-tomcat55-jsp-2_0-api-javadoc
  • suse-upgrade-tomcat55-server-lib
  • suse-upgrade-tomcat55-servlet-2_4-api
  • suse-upgrade-tomcat55-servlet-2_4-api-javadoc
  • suse-upgrade-tomcat55-webapps
  • suse-upgrade-tomcat6
  • suse-upgrade-tomcat6-admin-webapps
  • suse-upgrade-tomcat6-docs-webapp
  • suse-upgrade-tomcat6-javadoc
  • suse-upgrade-tomcat6-jsp-2_1-api
  • suse-upgrade-tomcat6-lib
  • suse-upgrade-tomcat6-servlet-2_5-api
  • suse-upgrade-tomcat6-webapps
  • suse-upgrade-websphere-as_ce

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;