CVE-2016-8704: Memcached

Critical severity, CVSS 9.8. EPSS: 23.2% chance of exploitation in the next 30 days.

An integer overflow in the process_bin_append_prepend function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

Affected products

  • Memcached Memcached: up to and including 1.4.31

Published 2017-01-06. Last modified 2026-06-17.