Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-32672

Опубликовано: 04 окт. 2021
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4
CVSS3: 5.3

Описание

Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malformed requests that cause the debugger’s protocol parser to read data beyond the actual buffer. This issue affects all versions of Redis with Lua debugging support (3.2 or newer). The problem is fixed in versions 6.2.6, 6.0.16 and 5.0.14.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

5:6.0.16-1
esm-apps-legacy/xenial

not-affected

code not present
esm-apps/bionic

released

5:4.0.9-1ubuntu0.2+esm3
esm-apps/focal

released

5:5.0.7-2ubuntu0.1+esm1
esm-apps/jammy

not-affected

5:6.0.16-1
esm-apps/noble

not-affected

5:6.0.16-1
esm-apps/xenial

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present
focal

ignored

end of standard support, was needed

Показывать по

EPSS

Процентиль: 77%
0.01831
Низкий

4 Medium

CVSS2

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.1
redhat
почти 5 лет назад

Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malformed requests that cause the debugger’s protocol parser to read data beyond the actual buffer. This issue affects all versions of Redis with Lua debugging support (3.2 or newer). The problem is fixed in versions 6.2.6, 6.0.16 and 5.0.14.

CVSS3: 5.3
nvd
почти 5 лет назад

Redis is an open source, in-memory database that persists on disk. When using the Redis Lua Debugger, users can send malformed requests that cause the debugger’s protocol parser to read data beyond the actual buffer. This issue affects all versions of Redis with Lua debugging support (3.2 or newer). The problem is fixed in versions 6.2.6, 6.0.16 and 5.0.14.

CVSS3: 4.3
msrc
почти 5 лет назад

Vulnerability in Lua Debugger in Redis

CVSS3: 5.3
debian
почти 5 лет назад

Redis is an open source, in-memory database that persists on disk. Whe ...

CVSS3: 3.1
github
почти 5 лет назад

Vulnerability in Lua Debugger

EPSS

Процентиль: 77%
0.01831
Низкий

4 Medium

CVSS2

5.3 Medium

CVSS3