Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-31294

Опубликовано: 15 июл. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.9

Описание

Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

5:7.0.15-1build2
esm-apps-legacy/xenial

ignored

upstream will not fix
esm-apps/bionic

ignored

upstream will not fix
esm-apps/focal

ignored

upstream will not fix
esm-apps/jammy

ignored

upstream will not fix
esm-apps/noble

not-affected

5:7.0.12-1
esm-apps/xenial

ignored

end of ESM support, was ignored [upstream will not fix]
esm-infra-legacy/trusty

ignored

upstream will not fix
focal

ignored

end of standard support, was needs-triage

Показывать по

EPSS

Процентиль: 69%
0.01309
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
redhat
около 3 лет назад

Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.

CVSS3: 5.9
nvd
около 3 лет назад

Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.

CVSS3: 5.9
debian
около 3 лет назад

Redis before 6cbea7d allows a replica to cause an assertion failure in ...

CVSS3: 7.5
github
около 3 лет назад

Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.

EPSS

Процентиль: 69%
0.01309
Низкий

5.9 Medium

CVSS3