CVE-2016-9051

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
21/02/2017
Last modified:
20/04/2025

Description

An exploitable out-of-bounds write vulnerability exists in the batch transaction field parsing functionality of Aerospike Database Server 3.10.0.3. A specially crafted packet can cause an out-of-bounds write resulting in memory corruption which can lead to remote code execution. An attacker can simply connect to the port to trigger this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:aerospike:database_server:3.10.0.3:*:*:*:*:*:*:*