Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2025-27151

Опубликовано: 11 июл. 2025
Источник: msrc
CVSS3: 4.7
EPSS Низкий

Описание

redis-check-aof may lead to stack overflow and potential RCE

EPSS

Процентиль: 15%
0.00048
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
ubuntu
5 месяцев назад

Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been patched in version 8.0.2.

CVSS3: 2.5
redhat
5 месяцев назад

Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been patched in version 8.0.2.

CVSS3: 4.7
nvd
5 месяцев назад

Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been patched in version 8.0.2.

CVSS3: 4.7
debian
5 месяцев назад

Redis is an open source, in-memory database that persists on disk. In ...

suse-cvrf
4 месяца назад

Security update for redis

EPSS

Процентиль: 15%
0.00048
Низкий

4.7 Medium

CVSS3