[CLSA-2026:1779095842] memcached: Fix of CVE-2021-37519
Type:
security
Severity:
Moderate
Release date:
2026-05-18 09:17:26 UTC
Description:
- CVE-2021-37519: heap buffer overflow in authfile_load() when the auth file lacks a trailing newline; missing bounds check on fgets() and missing NUL check in the user-entry parse loop allow local DoS via a crafted --auth-file.
Updated packages:
  • memcached-1.6.9-7.el9.tuxcare.els1.x86_64.rpm
    sha:39373c24f0ed97a3a8567c5fa1613b4f7e7650fc2b3d9b781ed9dfa9e76b9c1a
  • memcached-devel-1.6.9-7.el9.tuxcare.els1.x86_64.rpm
    sha:61488507ce757e5294bda8a28f66780fb863ad2092b1b3ce3fe4d5160dd46ae7
  • memcached-selinux-1.6.9-7.el9.tuxcare.els1.x86_64.rpm
    sha:20f7952ce49ee916df79f7f89843f06ec4b7b7f306527937165f5c81bf577535
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.