Описание
Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem is fixed in Redis 7.2.7 and 7.4.2.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-infra/focal | DNE | |
| focal | DNE | |
| jammy | DNE | |
| noble | DNE | |
| oracular | ignored | end of life, was needs-triage |
| plucky | needs-triage | |
| questing | needs-triage | |
| upstream | needs-triage |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 5:8.0.2-3build1 |
| esm-apps/bionic | not-affected | 5:4.0.9-1ubuntu0.2+esm5 |
| esm-apps/focal | not-affected | 5:5.0.7-2ubuntu0.1+esm3 |
| esm-apps/jammy | not-affected | 5:6.0.16-1ubuntu1+esm2 |
| esm-apps/noble | released | 5:7.0.15-1ubuntu0.24.04.1 |
| esm-apps/xenial | not-affected | 2:3.0.6-1ubuntu0.4+esm3 |
| esm-infra-legacy/trusty | not-affected | |
| focal | not-affected | |
| jammy | not-affected | |
| noble | released | 5:7.0.15-1ubuntu0.24.04.1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | needs-triage | |
| esm-apps/noble | released | 7.2.8+dfsg1-0ubuntu0.24.04.2 |
| esm-infra/focal | DNE | |
| focal | DNE | |
| jammy | DNE | |
| noble | released | 7.2.8+dfsg1-0ubuntu0.24.04.2 |
| oracular | released | 7.2.8+dfsg1-0ubuntu0.24.10.2 |
| plucky | needs-triage | |
| questing | needs-triage | |
| upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
4.4 Medium
CVSS3
Связанные уязвимости
Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem is fixed in Redis 7.2.7 and 7.4.2.
Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem is fixed in Redis 7.2.7 and 7.4.2.
Redis allows denial-of-service due to malformed ACL selectors
Redis is an open source, in-memory database that persists on disk. An ...
Уязвимость системы управления базами данных Redis, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
4.4 Medium
CVSS3