Количество 19
Количество 19
CVE-2024-46981
Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands.
CVE-2024-46981
Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands.
CVE-2024-46981
Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands.
CVE-2024-46981
Redis' Lua library commands may lead to remote code execution
CVE-2024-46981
Redis is an open source, in-memory database that persists on disk. An ...
SUSE-SU-2025:0162-1
Security update for redis
GHSA-39h2-x6c4-6w4c
Lua library commands may lead to remote code execution
BDU:2025-00214
Уязвимость системы управления базами данных (СУБД) Redis, связанная с использованием памяти после её освобождения, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2025:0163-1
Security update for redis
SUSE-SU-2025:0161-1
Security update for redis7
SUSE-SU-2025:0160-1
Security update for redis7
RLSA-2025:0692
Important: redis:7 security update
ELSA-2025-0692
ELSA-2025-0692: redis:7 security update (IMPORTANT)
SUSE-SU-2025:0081-1
Security update for redis
ROS-20250114-13
Множественные уязвимости redis
RLSA-2025:0693
Important: redis security update
ELSA-2025-0693
ELSA-2025-0693: redis security update (IMPORTANT)
RLSA-2025:0595
Important: redis:6 security update
ELSA-2025-0595
ELSA-2025-0595: redis:6 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-46981 Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands. | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
CVE-2024-46981 Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands. | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
CVE-2024-46981 Redis is an open source, in-memory database that persists on disk. An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem is fixed in 7.4.2, 7.2.7, and 6.2.17. An additional workaround to mitigate the problem without patching the redis-server executable is to prevent users from executing Lua scripts. This can be done using ACL to restrict EVAL and EVALSHA commands. | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
CVE-2024-46981 Redis' Lua library commands may lead to remote code execution | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
CVE-2024-46981 Redis is an open source, in-memory database that persists on disk. An ... | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
SUSE-SU-2025:0162-1 Security update for redis | 8% Низкий | больше 1 года назад | ||
GHSA-39h2-x6c4-6w4c Lua library commands may lead to remote code execution | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
BDU:2025-00214 Уязвимость системы управления базами данных (СУБД) Redis, связанная с использованием памяти после её освобождения, позволяющая нарушителю выполнить произвольный код | CVSS3: 7 | 8% Низкий | больше 1 года назад | |
SUSE-SU-2025:0163-1 Security update for redis | больше 1 года назад | |||
SUSE-SU-2025:0161-1 Security update for redis7 | больше 1 года назад | |||
SUSE-SU-2025:0160-1 Security update for redis7 | больше 1 года назад | |||
RLSA-2025:0692 Important: redis:7 security update | больше 1 года назад | |||
ELSA-2025-0692 ELSA-2025-0692: redis:7 security update (IMPORTANT) | больше 1 года назад | |||
SUSE-SU-2025:0081-1 Security update for redis | больше 1 года назад | |||
ROS-20250114-13 Множественные уязвимости redis | CVSS3: 4.4 | больше 1 года назад | ||
RLSA-2025:0693 Important: redis security update | больше 1 года назад | |||
ELSA-2025-0693 ELSA-2025-0693: redis security update (IMPORTANT) | больше 1 года назад | |||
RLSA-2025:0595 Important: redis:6 security update | больше 1 года назад | |||
ELSA-2025-0595 ELSA-2025-0595: redis:6 security update (IMPORTANT) | больше 1 года назад |
Уязвимостей на страницу