QID 379542
QID 379542: Couchbase Server Denial of Service (DoS) Vulnerability (CVE-2023-43768)
Couchbase Server, originally known as Membase, is an open-source, distributed multi-model NoSQL document-oriented database software package optimized for interactive applications.
CVE-2023-43768: A malicious user may easily crash a Memcached server by connecting to the server and start sending large commands..
Affected Products:
Couchbase Server 7.2.0
Couchbase Server 7.1.0 to 7.1.4
All 7.0 versions
All 6.6 versions
QID Detection Logic(Authenticated):
QID checks for vulnerable versions of installed Couchbase server in the System.
Successful exploitation of this vulnerability could allow unauthenticated users may cause Memcached to run out of memory via large commands.
Solution
Customers are advised to refer to Couchbase Server for more information.
Vendor References
- Couchbase Server -
www.couchbase.com/alerts/
CVEs related to QID 379542
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Couchbase Server |
|