← Back to browse · API

CVE-2016-9053

Severity
CRITICAL
CVSS
9.8
EPSS
0.07249
Risk score
41.74
CISA KEV
No
PoC
No
Published
2017-02-21
Modified
2024-08-06
First seen
2026-08-07
Aliases
EUVD-2016-9874, GHSA-C5VW-2CFJ-6QF7
Products
Aerospike:Database Server 3.10.0.3
Sources
euvd EUVD-2016-9874

Description

An exploitable out-of-bounds indexing vulnerability exists within the RW fabric message particle type of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause the server to fetch a function table outside the bounds of an array resulting in remote code execution. An attacker can simply connect to the port to trigger this vulnerability.

References