Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

fstec логотип

BDU:2022-05912

почти 4 года назад

Уязвимость реализации команды XAUTOCLAIM системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
EPSS: Низкий
redos логотип

ROS-20220929-02

почти 4 года назад

Уязвимость Redis

EPSS: Низкий
ubuntu логотип

CVE-2022-35951

почти 4 года назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2022-35951

почти 4 года назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2022-35951

почти 4 года назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2022-35951

почти 4 года назад

Redis is an in-memory database that persists on disk. Versions 7.0.0 a ...

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-5gc4-76rx-22c9

почти 4 года назад

Heap overflow in Redis 7.0 XAUTOCLAIM command's COUNT argument.

CVSS3: 7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2022-05912

Уязвимость реализации команды XAUTOCLAIM системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 7
3%
Низкий
почти 4 года назад
redos логотип
ROS-20220929-02

Уязвимость Redis

3%
Низкий
почти 4 года назад
ubuntu логотип
CVE-2022-35951

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
3%
Низкий
почти 4 года назад
redhat логотип
CVE-2022-35951

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 9.8
3%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-35951

Redis is an in-memory database that persists on disk. Versions 7.0.0 and above, prior to 7.0.5 are vulnerable to an Integer Overflow. Executing an `XAUTOCLAIM` command on a stream key in a specific state, with a specially crafted `COUNT` argument may cause an integer overflow, a subsequent heap overflow, and potentially lead to remote code execution. This has been patched in Redis version 7.0.5. No known workarounds exist.

CVSS3: 7
3%
Низкий
почти 4 года назад
debian логотип
CVE-2022-35951

Redis is an in-memory database that persists on disk. Versions 7.0.0 a ...

CVSS3: 7
3%
Низкий
почти 4 года назад
github логотип
GHSA-5gc4-76rx-22c9

Heap overflow in Redis 7.0 XAUTOCLAIM command's COUNT argument.

CVSS3: 7
3%
Низкий
почти 4 года назад

Уязвимостей на страницу