Описание
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 8 | redis | Not affected | ||
| Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) | redis | Will not fix | ||
| Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) Operational Tools | redis | Will not fix | ||
| Red Hat Fuse 7 | camel-spring-redis | Not affected | ||
| Red Hat JBoss Fuse 6 | camel-spring-redis | Not affected | ||
| Red Hat Mobile Application Platform 4 | rhmap-redis-docker | Will not fix | ||
| Red Hat OpenStack Platform 12 (Pike) | redis | Will not fix | ||
| Red Hat OpenStack Platform 8 (Liberty) | redis | Will not fix | ||
| Red Hat OpenStack Platform 8 (Liberty) Operational Tools | redis | Will not fix | ||
| Red Hat OpenStack Platform 9 (Mitaka) | redis | Will not fix |
Показывать по
Дополнительная информация
Статус:
6.3 Medium
CVSS3
Связанные уязвимости
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
Memory Corruption was discovered in the cmsgpack library in the Lua su ...
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
Уязвимость библиотеки cmsgpack подсистемы Lua системы управления базами данных Redis, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации
6.3 Medium
CVSS3