memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks due to items existing in hash table being reused from free list. This attack appear to be exploitable via network connectivity to the memcached service. This vulnerability appears to have been fixed in 1.4.37 and later.
{
"unresolved_ranges": [
{
"extracted_events": [
{
"introduced": "14.04"
},
{
"last_affected": "14.04"
},
{
"introduced": "16.04"
},
{
"last_affected": "16.04"
},
{
"introduced": "17.10"
},
{
"last_affected": "17.10"
}
],
"cpes": [
"cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*",
"cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*",
"cpe:2.3:o:canonical:ubuntu_linux:17.10:*:*:*:*:*:*:*"
],
"source": "CPE_STRING",
"vendor_product": "canonical:ubuntu_linux"
},
{
"extracted_events": [
{
"introduced": "7.0"
},
{
"last_affected": "7.0"
},
{
"introduced": "8.0"
},
{
"last_affected": "8.0"
},
{
"introduced": "9.0"
},
{
"last_affected": "9.0"
}
],
"cpes": [
"cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*",
"cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
],
"source": "CPE_STRING",
"vendor_product": "debian:debian_linux"
},
{
"extracted_events": [
{
"introduced": "10"
},
{
"last_affected": "10"
}
],
"cpes": [
"cpe:2.3:a:redhat:openstack:10:*:*:*:*:*:*:*"
],
"source": "CPE_STRING",
"vendor_product": "redhat:openstack"
}
]
}{
"cpe": "cpe:2.3:a:memcached:memcached:*:*:*:*:*:*:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "1.4.37"
}
],
"source": [
"CPE_RANGE",
"REFERENCES"
]
}"2026-07-08T14:58:09Z"
[
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"116175525107071235762775892892593526687",
"308621949887795613377179406419254760338",
"281313450733406634634394832369241572595",
"101408851915396029955846791138291327528",
"261625265653122859267635819570464207182",
"280434054283072272031618508016491721137",
"103569882656745051580092083023746586535"
]
},
"signature_version": "v1",
"source": "https://github.com/memcached/memcached/commit/a8c4a82787b8b6c256d61bd5c42fb7f92d1bae00",
"id": "CVE-2018-1000127-17b1fd8c",
"target": {
"file": "memcached.c"
}
},
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 4182.0,
"function_hash": "248674664190854414244357360897815887031"
},
"signature_version": "v1",
"source": "https://github.com/memcached/memcached/commit/a8c4a82787b8b6c256d61bd5c42fb7f92d1bae00",
"id": "CVE-2018-1000127-84185067",
"target": {
"function": "process_get_command",
"file": "memcached.c"
}
},
{
"signature_type": "Line",
"deprecated": false,
"digest": {
"threshold": 0.9,
"line_hashes": [
"175461750493000930897935924848337101969",
"192269655367187617408254834074186477970",
"221242958252238329203403321540853667933",
"145913096158709222671633809507516731853",
"48323816591972118539143361778528515586",
"333297424530467483537118466602470704463",
"91505168211258024554534896352683346793",
"51013546737901549558574275492483305384",
"254391355791058172497881152196370990023",
"336950469602497612571733335929510696835",
"338630215160596220277362880841591758988",
"217943372716051384462705078436889564848",
"63953160723002453408594560121226292737",
"320025473947188511227975556504958860334",
"38124705616753464304736035920851759990"
]
},
"signature_version": "v1",
"source": "https://github.com/memcached/memcached/commit/e01bc5cca551845ea139aceefc484f303901cdc2",
"id": "CVE-2018-1000127-d2333629",
"target": {
"file": "items.c"
}
},
{
"signature_type": "Function",
"deprecated": false,
"digest": {
"length": 1697.0,
"function_hash": "258462072439635049322093280535354653052"
},
"signature_version": "v1",
"source": "https://github.com/memcached/memcached/commit/e01bc5cca551845ea139aceefc484f303901cdc2",
"id": "CVE-2018-1000127-e0e7515e",
"target": {
"function": "lru_maintainer_crawler_check",
"file": "items.c"
}
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-1000127.json"