The Memcache::getextendedstats function can be used to trigger an out-of-bounds read. Exploiting this issue requires control over memcached server hostnames and/or ports. This affects all supported versions of HHVM (3.30 and 3.27.4 and below).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: facebook
Published: 2018-12-31T22:00:00
Updated: 2024-08-05T06:01:48.705Z
Reserved: 2018-01-26T00:00:00
Link: CVE-2018-6340
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-12-31T22:29:00.327
Modified: 2024-11-21T04:10:30.957
Link: CVE-2018-6340
Redhat
No data.