Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:. Oracle Linux Security Advisory ELSA-2026-27862 http://linux.oracle.com/errata/ELSA-2026-27862.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: x86_64: memcached-1.6.9-7.el9_8.1.x86_64.rpm memcached-selinux-1.6.9-7.el9_8.1.x86_64.rpm aarch64: memcached-1.6.9-7.el9_8.1.aarch64.rpm memcached-selinux-1.6.9-7.el9_8.1.aarch64.rpm SRPMS: http://oss.oracle.com/ol9/SRPMS-updates/memcached-1.6.9-7.el9_8.1.src.rpm Related CVEs: CVE-2026-47783 Description of changes: [0:1.6.9-7.1] - Fix timing side-channel in SASL password database authentication (CVE-2026-47783) - Resolves: RHEL-179093 _______________________________________________ El-errata mailing list
Important: memcached security update. {"type": "TYPE_SECURITY", "shortCode": "RL", "name": "RLSA-2026:27842", "synopsis": "Important: memcached security update", "severity": "SEVERITY_IMPORTANT", "topic": "An update is available for memcached.\nThis update affects Rocky Linux 10.\nA Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list", "description": "memcached is a high-performance, distributed memory object caching system, generic in nature, but intended for use in speeding up dynamic web applications by alleviating database load. \n\nSecurity Fix(es):\n\n* memcached: memcached: Username enumeration via timing side channel (CVE-2026-47783)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.", "solution": null, "affectedProducts": ["Rocky Linux 10"], "fixes": [{"ticket": "2480089", "sourceBy": "Red Hat", "sourceLink": "https://bugzilla.redhat.com/show_bug.cgi?id=2480089", "description": ""}], "cves": [{"name": "CVE-2026-47783", "sourceBy": "MITRE", "sourceLink": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-47783", "cvss3ScoringVector": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H", "cvss3BaseScore": "8.1", "cwe": "CWE-208"}], "references": [], "publishedAt": "2026-06-24T12:05:09.232192Z", "rpms": {"Rocky Linux 10": {"nvras": ["memcached-debuginfo-0:1.6.23-7.el10_2.1.s390x.rpm", "memcached-0:1.6.23-7.el10_2.1.aarch64.rpm", "memcached-0:1.6.23-7.el10_2.1.ppc64le.rpm", "memcached-0:1.6.23-7.el10_2.1.src.rpm", "memcached-0:1.6.23-7.el10_2.1.s390x.rpm", "memcached-selinux-0:1.6.23-7.el10_2.1.aarch64.rpm", "memcached-debuginfo-0:1.6.23-7.el10_2.1.ppc64le.rpm", "memcached-debuginfo-0:1.6.23-7.el10_2.1.x86_64.rpm", "memcached-debugsource-0:1.6.23-7.el10_2.1.x86_64.rpm", "memcached-debugsource-0:1.6.23-7.el10_2.1.aarch64.rpm", "memcached-0:1.6.23-7.el10_2.1.x86_64.rpm","memcached-selinux-0:1.6.23-7.el10_2.1.s390x.rpm", "memcached-debuginfo-0:1.6.23-7.el10_2.1.aarch64.rpm", "memcached-selinux-0:1.6.23-7.el10_2.1.x86_64.rpm", "memcached-debugsource-0:1.6.23-7.el10_2.1.ppc64le.rpm", "memcached-debugsource-0:1.6.23-7.el10_2.1.s390x.rpm", "memcached-selinux-0:1.6.23-7.el10_2.1.ppc64le.rpm"]}}, "rebootSuggested": false, "buildReferences": []}. Memcached security update for Rocky Linux addresses important issues, enhancing protection against username enumeration attacks. Stay secure!. Rocky Linux memcached update. . Severity: Important. LinuxSecurity.com Team
Security update. Publication date: 12 Jun 2026 URL: https://advisories.mageia.org/MGASA-2026-0203.html Type: security Affected Mageia releases: 9 CVE: CVE-2026-47783, CVE-2026-47784 Description: CVE-2026-47784 In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_userdb_checkpass. CVE-2026-47783 In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass. References: - https://bugs.mageia.org/show_bug.cgi?id=35552 - https://github.com/memcached/memcached/wiki/ReleaseNotes1642 - https://www.cve.org/CVERecord?id=CVE-2026-47783 - https://www.cve.org/CVERecord?id=CVE-2026-47784 SRPMS: - 9/core/memcached-1.6.42-1.mga9 . Critical memcached security advisory for Mageia 9 detailing significant timing attacks with CVE-2026-47783 and CVE-2026-47784.. Mageia memcached security timing attack CVE-2026-47783 CVE-2026-47784. . Severity: Critical. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for memcached Announcement ID: SUSE-SU-2026:22022-1 Release Date: 2026-06-02T13:56:05Z Rating: important References: * bsc#1265873 * bsc#1265881 Cross-References: * CVE-2026-47783 * CVE-2026-47784 CVSS scores: * CVE-2026-47783 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47783 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP applications 16.0 An update that solves two vulnerabilities can now be installed. ## Description: This update for memcached fixes the following issues * CVE-2026-47783: timing side-channel in SASL password database authentication (username) (bsc#1265873). * CVE-2026-47784: timing side-channel in SASL password database authentication (password) (bsc#1265881). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-877=1 * SUSE Linux Enterprise Server for SAP applications 16.0 zypper in -t patch SUSE-SLES-16.0-877=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.6.38-160000.3.1 * memcached-devel-1.6.38-160000.3.1 * memcached-1.6.38-160000.3.1 * memcached-debuginfo-1.6.38-160000.3.1 * SUSE Linux Enterprise Server for SAP applications 16.0 (ppc64le x86_64) * memcached-debugsource-1.6.38-160000.3.1 * memcached-devel-1.6.38-160000.3.1 * memcached-1.6.38-160000.3.1 * memcached-debuginfo-1.6.38-160000.3.1 ## References: *https://www.suse.com/security/cve/CVE-2026-47783.html * https://www.suse.com/security/cve/CVE-2026-47784.html * https://bugzilla.suse.com/show_bug.cgi?id=1265873 * https://bugzilla.suse.com/show_bug.cgi?id=1265881 . Resolve critical memcached security issues on SUSE with this important update addressing multiple vulnerabilities.. memcached security update important SUSE vulnerability. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for memcached Announcement ID: SUSE-SU-2026:2292-1 Release Date: 2026-06-08T08:51:34Z Rating: important References: * bsc#1265873 * bsc#1265881 Cross-References: * CVE-2026-47783 * CVE-2026-47784 CVSS scores: * CVE-2026-47783 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47783 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server 12 SP5 LTSS * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves two vulnerabilities can now be installed. ## Description: This update for memcached fixes the following issues * CVE-2026-47783: timing side-channel in SASL password database authentication (username) (bsc#1265873). * CVE-2026-47784: timing side-channel in SASL password database authentication (password) (bsc#1265881). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 12 SP5 LTSS zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-2026-2292=1 * SUSE Linux Enterprise Server 12 SP5 LTSS Extended Security zypper in -t patch SUSE-SLE-SERVER-12-SP5-LTSS-EXTENDED-SECURITY-2026-2292=1 ## Package List: * SUSE Linux Enterprise Server 12 SP5 LTSS (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.4.39-4.14.1 * memcached-debuginfo-1.4.39-4.14.1 * memcached-devel-1.4.39-4.14.1 * memcached-1.4.39-4.14.1 * SUSE Linux Enterprise Server 12 SP5 LTSSExtended Security (x86_64) * memcached-debugsource-1.4.39-4.14.1 * memcached-debuginfo-1.4.39-4.14.1 * memcached-devel-1.4.39-4.14.1 * memcached-1.4.39-4.14.1 ## References: * https://www.suse.com/security/cve/CVE-2026-47783.html * https://www.suse.com/security/cve/CVE-2026-47784.html * https://bugzilla.suse.com/show_bug.cgi?id=1265873 * https://bugzilla.suse.com/show_bug.cgi?id=1265881 . Update for memcached addresses two important vulnerabilities in SUSE products. Immediate action recommended for security.. SUSE memcached update important timing attack authentication. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for memcached Announcement ID: SUSE-SU-2026:2293-1 Release Date: 2026-06-08T08:53:01Z Rating: important References: * bsc#1265873 * bsc#1265881 Cross-References: * CVE-2026-47783 * CVE-2026-47784 CVSS scores: * CVE-2026-47783 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47783 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( NVD ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.3 * openSUSE Leap 15.4 * openSUSE Leap 15.5 * openSUSE Leap 15.6 * Server Applications Module 15-SP7 * SUSE Linux Enterprise Desktop 15 * SUSE Linux Enterprise Desktop 15 SP1 * SUSE Linux Enterprise Desktop 15 SP2 * SUSE Linux Enterprise Desktop 15 SP3 * SUSE Linux Enterprise Desktop 15 SP4 * SUSE Linux Enterprise Desktop 15 SP5 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 * SUSE Linux Enterprise High Performance Computing 15 SP1 * SUSE Linux Enterprise High Performance Computing 15 SP2 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Real Time 15 SP1 * SUSE Linux Enterprise Real Time 15 SP2 * SUSE Linux Enterprise Real Time 15 SP3 * SUSE Linux Enterprise Real Time 15 SP4 * SUSE Linux Enterprise Real Time 15 SP5 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE LinuxEnterprise Server 15 * SUSE Linux Enterprise Server 15 SP1 * SUSE Linux Enterprise Server 15 SP2 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 * SUSE Linux Enterprise Server for SAP Applications 15 SP1 * SUSE Linux Enterprise Server for SAP Applications 15 SP2 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Manager Client Tools for SLE 15 An update that solves two vulnerabilities can now be installed. ## Description: This update for memcached fixes the following issues * CVE-2026-47783: timing side-channel in SASL password database authentication (username) (bsc#1265873). * CVE-2026-47784: timing side-channel in SASL password database authentication (password) (bsc#1265881). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Manager Client Tools for SLE 15 zypper in -t patch SUSE-SLE-Manager-Tools-15-2026-2293=1 * Server Applications Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Server-Applications-15-SP7-2026-2293=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-2293=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-LTSS-2026-2293=1 * SUSE LinuxEnterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-2293=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-2293=1 * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-2293=1 * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-2293=1 * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-2293=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-2293=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-2293=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-2293=1 ## Package List: * SUSE Manager Client Tools for SLE 15 (aarch64 ppc64le s390x x86_64) * memcached-1.5.6-150000.4.10.1 * Server Applications Module 15-SP7 (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 *memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64) * memcached-debugsource-1.5.6-150000.4.10.1 * memcached-1.5.6-150000.4.10.1 * memcached-debuginfo-1.5.6-150000.4.10.1 * memcached-devel-1.5.6-150000.4.10.1 ## References: * https://www.suse.com/security/cve/CVE-2026-47783.html * https://www.suse.com/security/cve/CVE-2026-47784.html *https://bugzilla.suse.com/show_bug.cgi?id=1265873 * https://bugzilla.suse.com/show_bug.cgi?id=1265881 . Update addresses critical authentication flaws in memcached with important implications for openSUSE users and systems.. memcached security update, openSUSE important patch, timing side-channel risk. . Severity: Important. LinuxSecurity.com Team
An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed.. openSUSE security update: security update for memcached ------------------------------------------------------------- Announcement ID: openSUSE-SU-2026:20884-1 Rating: important References: * bsc#1265873 * bsc#1265881 Cross-References: * CVE-2026-47783 * CVE-2026-47784 CVSS scores: * CVE-2026-47783 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 16.0 ------------------------------------------------------------- An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed. Description: This update for memcached fixes the following issues - CVE-2026-47783: timing side-channel in SASL password database authentication (username) (bsc#1265873). - CVE-2026-47784: timing side-channel in SASL password database authentication (password) (bsc#1265881). Patch instructions: To install this openSUSE security update use the suse recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 16.0 zypper in -t patch openSUSE-Leap-16.0-877=1 Package List: - openSUSE Leap 16.0: memcached-1.6.38-160000.3.1 memcached-devel-1.6.38-160000.3.1 References: * https://www.suse.com/security/cve/CVE-2026-47783.html * https://www.suse.com/security/cve/CVE-2026-47784.html . Explore openSUSE security update for memcached addressing critical timing side-channel issues with important fixes.. openSUSE Memcached Update, Security Patch OpenSUSE, Memcached Side-Channel Fixes, OpenSUSE Vulnerability Management, Important Security Updates. . Severity: Important. LinuxSecurity.com Team
An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed.. openSUSE security update: security update for memcached ------------------------------------------------------------- Announcement ID: openSUSE-SU-2026:20884-1 Rating: important References: * bsc#1265873 * bsc#1265881 Cross-References: * CVE-2026-47783 * CVE-2026-47784 CVSS scores: * CVE-2026-47783 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-47784 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 16.0 ------------------------------------------------------------- An update that solves 2 vulnerabilities and has 2 bug fixes can now be installed. Description: This update for memcached fixes the following issues - CVE-2026-47783: timing side-channel in SASL password database authentication (username) (bsc#1265873). - CVE-2026-47784: timing side-channel in SASL password database authentication (password) (bsc#1265881). Patch instructions: To install this openSUSE security update use the suse recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 16.0 zypper in -t patch openSUSE-Leap-16.0-877=1 Package List: - openSUSE Leap 16.0: memcached-1.6.38-160000.3.1 memcached-devel-1.6.38-160000.3.1 References: * https://www.suse.com/security/cve/CVE-2026-47783.html * https://www.suse.com/security/cve/CVE-2026-47784.html . A vital openSUSE update for memcached addressing important side-channel vulnerabilities. Patch recommended for security.. openSUSE security, memcached update, vulnerability patch, timing issue fix. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.