CVE-2016-8705: Memcached

Critical severity, CVSS 9.8. EPSS: 19.9% chance of exploitation in the next 30 days.

Multiple integer overflows in process_bin_update function in Memcached, which is responsible for processing multiple commands of Memcached binary protocol, can be abused to cause heap overflow and lead to remote code execution.

Affected products

  • Memcached Memcached: up to and including 1.4.31

Published 2017-01-06. Last modified 2026-06-17.