Описание
Security update for valkey
This update for valkey fixes the following issues:
- CVE-2026-56684: use-after-free in TLS connection handling that could allow an authenticated client to achieve remote code execution using CLIENT KILL (bsc#1272443).
- CVE-2026-63639: corrupt stream RDB files containing a shared NACK across consumers can lead to remote code execution (bsc#1272442).
Changes for valkey:
- Update to 8.0.10.
Список пакетов
SUSE Linux Enterprise Module for Server Applications 15 SP7
valkey-8.0.10-150700.3.20.1
valkey-compat-redis-8.0.10-150700.3.20.1
valkey-devel-8.0.10-150700.3.20.1
Ссылки
- Link for SUSE-SU-2026:3427-1
- E-Mail link for SUSE-SU-2026:3427-1
- SUSE Security Ratings
- SUSE Bug 1272442
- SUSE Bug 1272443
- SUSE CVE CVE-2026-56684 page
- SUSE CVE CVE-2026-63639 page
Описание
unknown
Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-8.0.10-150700.3.20.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-compat-redis-8.0.10-150700.3.20.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-devel-8.0.10-150700.3.20.1
Ссылки
- CVE-2026-56684
- SUSE Bug 1272443
Описание
unknown
Затронутые продукты
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-8.0.10-150700.3.20.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-compat-redis-8.0.10-150700.3.20.1
SUSE Linux Enterprise Module for Server Applications 15 SP7:valkey-devel-8.0.10-150700.3.20.1
Ссылки
- CVE-2026-63639
- SUSE Bug 1272442