UbuntuUpdates.org

Package "memcached"

Name: memcached

Description:

High-performance in-memory object caching system

Latest version: 1.6.40-1ubuntu0.1
Release: resolute (26.04)
Level: updates
Repository: main
Homepage: https://memcached.org/

Links


Download "memcached"


Other versions of "memcached" in Resolute

Repository Area Version
base main 1.6.40-1
security main 1.6.40-1ubuntu0.1

Changelog

Version: 1.6.40-1ubuntu0.1 2026-05-27 16:07:41 UTC

  memcached (1.6.40-1ubuntu0.1) resolute-security; urgency=medium

  * SECURITY UPDATE: SASL password timing side-channel
    - debian/patches/CVE-2026-4778x.patch: Fix timing side-channel in SASL
      password database authentication in sasl_defs.c.
    - CVE-2026-47783
    - CVE-2026-47784

 -- Marc Deslauriers <email address hidden> Fri, 22 May 2026 13:10:35 -0400

CVE-2026-4778 A weakness has been identified in SourceCodester Sales and Inventory System 1.0. This vulnerability affects unknown code of the file update_category.
CVE-2026-47783 In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid
CVE-2026-47784 In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_u



About   -   Send Feedback to @ubuntu_updates