Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2025-46686

около 1 года назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-46686

около 1 года назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-46686

около 1 года назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-f46f-fjf4-h4m2

около 1 года назад

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
EPSS: Низкий
fstec логотип

BDU:2025-09083

около 1 года назад

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий
redos логотип

ROS-20250904-12

11 месяцев назад

Множественные уязвимости redis

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
0%
Низкий
около 1 года назад
github логотип
GHSA-f46f-fjf4-h4m2

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-09083

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
0%
Низкий
около 1 года назад
redos логотип
ROS-20250904-12

Множественные уязвимости redis

CVSS3: 4.9
11 месяцев назад

Уязвимостей на страницу