Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-35951

Опубликовано: 22 сент. 2022
Источник: redhat
CVSS3: 9.8
EPSS Высокий

Описание

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an XAUTOCLAIM command on a stream key in a specific state, with a specially crafted COUNT argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

An Integer Overflow attack vulnerability was found in Redis, an in-memory database that persists on disk. Executing a XAUTOCLAIM command on a stream key in a specific state with a specially crafted COUNT argument may cause an integer overflow, and a subsequent heap overflow, potentially leading to remote code execution.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/search-api-rhel8Not affected
Red Hat Ansible Automation Platform 1.2ansible-towerNot affected
Red Hat Enterprise Linux 8redis:6/redisNot affected
Red Hat Enterprise Linux 9redisNot affected
Red Hat Fuse 7redisNot affected
Red Hat OpenStack Platform 13 (Queens)redisNot affected
Red Hat Quay 3quay/quay-rhel8Not affected
Red Hat Software Collectionsrh-redis6-redisNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-190
https://bugzilla.redhat.com/show_bug.cgi?id=2129701redis: heap overflow in XAUTOCLAIM command's COUNT argument

EPSS

Процентиль: 99%
0.80412
Высокий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
больше 2 лет назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
nvd
больше 2 лет назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
debian
больше 2 лет назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 a ...

CVSS3: 7
fstec
больше 2 лет назад

Уязвимость реализации команды XAUTOCLAIM системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

redos
больше 2 лет назад

Уязвимость Redis

EPSS

Процентиль: 99%
0.80412
Высокий

9.8 Critical

CVSS3