A vulnerability, which was classified as problematic, has been found in memcached up to 1.6.41. Affected by this issue is the function sasl_server_userdb_checkpass. Performing a manipulation results in observable timing discrepancy.

This vulnerability is reported as CVE-2026-47783. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.