Логотип exploitDog
bind: "CVE-2023-28859"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2023-28859"

Количество 9

Количество 9

ubuntu логотип

CVE-2023-28859

около 2 лет назад

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2023-28859

около 2 лет назад

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-28859

около 2 лет назад

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-28859

около 2 лет назад

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-8fww-64cx-x8p5

около 2 лет назад

redis-py Race Condition due to incomplete fix

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2023-01832

около 2 лет назад

Уязвимость библиотеки Python для Redis redis-py, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1639-2

12 месяцев назад

Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1639-1

12 месяцев назад

Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict

EPSS: Низкий
redos логотип

ROS-20230620-07

около 2 лет назад

Множественные уязвимости python3-redis

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-28859

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 6.5
1%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-28859

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 4.3
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-28859

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open after canceling an async Redis command at an inopportune time, and can send response data to the client of an unrelated request. (This could, for example, happen for a non-pipeline operation.) NOTE: the solutions for CVE-2023-28859 address data leakage across AsyncIO connections in general.

CVSS3: 6.5
1%
Низкий
около 2 лет назад
debian логотип
CVE-2023-28859

redis-py before 4.4.4 and 4.5.x before 4.5.4 leaves a connection open ...

CVSS3: 6.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-8fww-64cx-x8p5

redis-py Race Condition due to incomplete fix

CVSS3: 6.5
1%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-01832

Уязвимость библиотеки Python для Redis redis-py, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 4.3
1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1639-2

Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict

12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:1639-1

Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict

12 месяцев назад
redos логотип
ROS-20230620-07

Множественные уязвимости python3-redis

CVSS3: 4.3
около 2 лет назад

Уязвимостей на страницу