← Back to browse · API

CVE-2016-9051

Severity
CRITICAL
CVSS
9.8
EPSS
0.06862
Risk score
41.6
CISA KEV
No
PoC
No
Published
2017-02-21
Modified
2024-08-06
First seen
2026-08-07
Aliases
EUVD-2016-9872, GHSA-V54P-9829-8M44
Products
Aerospike:Database Server 3.10.0.3
Sources
euvd EUVD-2016-9872

Description

An exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds write resulting in memory corruption which can lead to remote code execution. An attacker can simply connect to the port to trigger this vulnerability.

References