PT-2022-17969 · Unknown · Php-Memcached

Eslerm

·

Published

2022-04-05

·

Updated

2024-08-03

·

CVE-2022-26635

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PHP-Memcached versions 2.2.0 and below
Description The issue is related to an improper NULL termination, which allows attackers to execute CLRF injection. This could potentially lead to security breaches. Note that there is a dispute regarding the direct impact on PHP-Memcached.
Recommendations For PHP-Memcached versions 2.2.0 and below, consider updating to a version that fixes the improper NULL termination issue to prevent CLRF injection attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-9342
CVE-2022-26635

Affected Products

Php-Memcached