CVE-2023-43768: High severity wut com-server highspeed 100baselx vulnerability
Published Mar 27, 2024
·Updated
An issue was discovered in Couchbase Server 6.6.x through 7.2.0, before 7.1.5 and 7.2.1. Unauthenticated users may cause memcached to run out of memory via large commands.
Affected Software
3 affected components
Couchbase Couchbase Server>=6.6.0<=7.2.0, <7.1.5, <7.2.1
Couchbase Couchbase Server>=6.6.0<7.1.5
Couchbase Couchbase Server=7.2.0
Event History
Mar 27, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-43768?
CVE-2023-43768 has a high severity due to its potential to cause a denial of service by exhausting memory resources.
2
How do I fix CVE-2023-43768?
To fix CVE-2023-43768, it is recommended to upgrade Couchbase Server to version 7.2.1 or later, or apply relevant patches.
3
Which versions are affected by CVE-2023-43768?
CVE-2023-43768 affects Couchbase Server versions 6.6.x through 7.2.0, and versions prior to 7.1.5 and 7.2.1.
4
Who can exploit CVE-2023-43768?
CVE-2023-43768 can be exploited by unauthenticated users, allowing them to send large commands to memcached.
5
What impact does CVE-2023-43768 have on Couchbase Server?
The impact of CVE-2023-43768 on Couchbase Server can lead to service disruptions due to memory exhaustion.