Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-28856

Опубликовано: 18 апр. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 5.5

Описание

Redis is an open source, in-memory database that persists on disk. Authenticated users can use the HINCRBYFLOAT command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

5:7.0.15-1build2
esm-apps/bionic

released

5:4.0.9-1ubuntu0.2+esm4
esm-apps/focal

released

5:5.0.7-2ubuntu0.1+esm2
esm-apps/jammy

released

5:6.0.16-1ubuntu1+esm1
esm-apps/noble

not-affected

5:7.0.12-1
esm-apps/xenial

released

2:3.0.6-1ubuntu0.4+esm2
esm-infra-legacy/trusty

not-affected

2:2.8.4-2ubuntu0.2+esm3
focal

ignored

end of standard support, was needed
jammy

needed

Показывать по

EPSS

Процентиль: 34%
0.00133
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
больше 2 лет назад

Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.

CVSS3: 5.5
nvd
больше 2 лет назад

Redis is an open source, in-memory database that persists on disk. Authenticated users can use the `HINCRBYFLOAT` command to create an invalid hash field that will crash Redis on access in affected versions. This issue has been addressed in in versions 7.0.11, 6.2.12, and 6.0.19. Users are advised to upgrade. There are no known workarounds for this issue.

CVSS3: 6.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 5.5
debian
больше 2 лет назад

Redis is an open source, in-memory database that persists on disk. Aut ...

CVSS3: 6.5
redos
около 2 лет назад

Уязвимость Redis

EPSS

Процентиль: 34%
0.00133
Низкий

5.5 Medium

CVSS3