Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-12453

Опубликовано: 16 июн. 2018
Источник: debian
EPSS Средний

Описание

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
redisnot-affectedpackage

Примечания

  • https://gist.github.com/fakhrizulkifli/34a56d575030682f6c564553c53b82b5

  • https://github.com/antirez/redis/commit/c04082cf138f1f51cedf05ee9ad36fb6763cafc6

EPSS

Процентиль: 97%
0.31963
Средний

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

CVSS3: 4.3
redhat
больше 7 лет назад

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

CVSS3: 7.5
nvd
больше 7 лет назад

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

CVSS3: 7.5
github
больше 3 лет назад

Type confusion in the xgroupCommand function in t_stream.c in redis-server in Redis before 5.0 allows remote attackers to cause denial-of-service via an XGROUP command in which the key is not a stream.

EPSS

Процентиль: 97%
0.31963
Средний