Learn about Centmin Mod LEMP Stack today
Register Now

Security Memcached Server 1.4.33 Security Vulnerability Fix Release

Discussion in 'Centmin Mod News' started by eva2000, Nov 5, 2016.

Thread Status:
Not open for further replies.
  1. eva2000

    eva2000 Administrator Staff Member

    May 24, 2014
    Brisbane, Australia
    Local Time:
    11:50 PM
    Nginx 1.19.x
    MariaDB 5.5/10.x
    Memcached Server 1.4.33 was released. Centmin Mod LEMP stack by default install Memcached server so everyone who uses Centmin Mod needs to update to fix security vulnerabilities CVE-2016-8704, CVE-2016-8705 and CVE-2016-8706. Full details of how to update are outlined here.

    Note, Centmin Mod installs CSF Firewall by default out of the box and Memcached port 11211 is not whitelisted anymore for public access to port 11211. You can verify this via this grep command on CSF config file /etc/csf/csf.conf and if command returns empty it means no mention of 11211 exists in the config file so memcached port 11211 is not publicly accessible anyway.
    Code (Text):
    grep '11211' /etc/csf/csf.conf
Thread Status:
Not open for further replies.