Логотип exploitDog
bind:CVE-2025-67733
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-67733

Количество 11

Количество 11

ubuntu логотип

CVE-2025-67733

около 1 месяца назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
EPSS: Низкий
redhat логотип

CVE-2025-67733

около 1 месяца назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2025-67733

около 1 месяца назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
EPSS: Низкий
msrc логотип

CVE-2025-67733

около 1 месяца назад

Valkey Affected by RESP Protocol Injection via Lua error_reply

CVSS3: 8.5
EPSS: Низкий
debian логотип

CVE-2025-67733

около 1 месяца назад

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8 ...

CVSS3: 8.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0848-1

21 день назад

Security update for valkey

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0685-1

29 дней назад

Security update for valkey

EPSS: Низкий
rocky логотип

RLSA-2026:3507

23 дня назад

Important: valkey security update

EPSS: Низкий
rocky логотип

RLSA-2026:3443

28 дней назад

Important: valkey security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3507

26 дней назад

ELSA-2026-3507: valkey security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-3443

около 1 месяца назад

ELSA-2026-3443: valkey security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 7.1
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12, a malicious user can use scripting commands to inject arbitrary information into the response stream for the given client, potentially corrupting or returning tampered data to other users on the same connection. The error handling code for lua scripts does not properly handle null characters. Versions 9.0.2, 8.1.6, 8.0.7, and 7.2.12 fix the issue.

CVSS3: 8.5
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-67733

Valkey Affected by RESP Protocol Injection via Lua error_reply

CVSS3: 8.5
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-67733

Valkey is a distributed key-value database. Prior to versions 9.0.2, 8 ...

CVSS3: 8.5
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:0848-1

Security update for valkey

21 день назад
suse-cvrf логотип
SUSE-SU-2026:0685-1

Security update for valkey

29 дней назад
rocky логотип
RLSA-2026:3507

Important: valkey security update

23 дня назад
rocky логотип
RLSA-2026:3443

Important: valkey security update

28 дней назад
oracle-oval логотип
ELSA-2026-3507

ELSA-2026-3507: valkey security update (IMPORTANT)

26 дней назад
oracle-oval логотип
ELSA-2026-3443

ELSA-2026-3443: valkey security update (IMPORTANT)

около 1 месяца назад

Уязвимостей на страницу