Related Vulnerabilities: CVE-2016-8704  

An integer overflow in the process_bin_append_prepend function which is responsible for processing multiple commands of Memcached binary protocol can be abused to cause heap overflow and lead to remote code execution.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

An integer overflow in the process_bin_append_prepend function which is responsible for processing multiple commands of Memcached binary protocol can be abused to cause heap overflow and lead to remote code execution.

AVG-55 memcached 1.4.31-1 1.4.32-1 Critical Fixed

01 Nov 2016 ASA-201611-1 AVG-55 memcached Critical arbitrary code execution

http://www.talosintelligence.com/reports/TALOS-2016-0219/