Memcachedb is an in-memory key-value store derived from memcached, deployed in caching and persistence layers where data sensitivity and access control are critical. Its observed vulnerability profile centers on information-disclosure and input-validation weaknesses that reflect the structural risks of storing and serving structured data without robust boundary enforcement. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Memcachedb over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2415HIGH Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer ove | Aug 10, 2009 | 10.0 | 31 | NO | NO |
CVE-2010-1152MEDIUM memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: | Apr 12, 2010 | 5.0 | 28 | NO | YES |
CVE-2009-1255MEDIUM The process_stat function in (1) Memcached before 1.2.8 and (2) MemcacheDB 1.2.0 discloses (a) the contents of /proc/self/maps in response to a stats maps command and (b) memory-al | Apr 30, 2009 | 5.0 | 16 | NO | NO |
CVE-2009-1494MEDIUM The process_stat function in Memcached 1.2.8 discloses memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain potentially sensi | Apr 30, 2009 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Memcachedb.
Media articles that mention a CVE ID that affects a product developed by Memcachedb — matched by CVE ID, not by vendor name.