Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Ubuntu 19.04: USN-3963-1 Critical: Memcached Crash Risk

Ubuntu Large Esm H500
Memcached could be made to crash if it received specially crafted network traffic.
=========================================================================Ubuntu Security Notice USN-3963-1
May 01, 2019

memcached vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 19.04
- Ubuntu 18.10
- Ubuntu 18.04 LTS

Summary:

Memcached could be made to crash if it received specially crafted network
traffic.

Software Description:
- memcached: high-performance memory object caching system

Details:

It was discovered that Memcached incorrectly handled certain lru command
messages. A remote attacker could possibly use this issue to cause
Memcached to crash, resulting in a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 19.04:
  memcached                       1.5.10-0ubuntu1.19.04.1

Ubuntu 18.10:
  memcached                       1.5.10-0ubuntu1.18.10.1

Ubuntu 18.04 LTS:
  memcached                       1.5.6-0ubuntu1.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-3963-1
  CVE-2019-11596

Package Information:
  https://launchpad.net/ubuntu/+source/memcached/1.5.10-0ubuntu1.19.04.1
  https://launchpad.net/ubuntu/+source/memcached/1.5.10-0ubuntu1.18.10.1
  https://launchpad.net/ubuntu/+source/memcached/1.5.6-0ubuntu1.1

Ubuntu 19.04: USN-3963-1 Critical: Memcached Crash Risk

ubuntu
Calendar Grey May 1, 2019
Dist Ubuntu Esm H88
Redis on Debian may fail under harmful traffic, creating a denial of service vulnerability. Upgrade to patched releases.
Memcached could be made to crash if it received specially crafted network traffic.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 19.04: memcached 1.5.10-0ubuntu1.19.04.1 Ubuntu 18.10: memcached 1.5.10-0ubuntu1.18.10.1 Ubuntu 18.04 LTS: memcached 1.5.6-0ubuntu1.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-3963-1

CVE-2019-11596

Severity
critical
Lowest
Low
Medium
High
Critical

May 01, 2019

Package Information

https://launchpad.net/ubuntu/+source/memcached/1.5.10-0ubuntu1.19.04.1 https://launchpad.net/ubuntu/+source/memcached/1.5.10-0ubuntu1.18.10.1 https://launchpad.net/ubuntu/+source/memcached/1.5.6-0ubuntu1.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here