Количество 34
Количество 34
CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. Fixed in Redis 8.2.9, 8.4.6, 8.6.6, 8.8.2, and 8.10.1.
CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendin ...
RLSA-2026:64807
Important: valkey security, bug fix, and enhancement update
RLSA-2026:64796
Important: valkey security, bug fix, and enhancement update
ELSA-2026-64807-0
ELSA-2026-64807-0: valkey security, bug fix, and enhancement update (IMPORTANT)
ELSA-2026-64796-0
ELSA-2026-64796-0: valkey security, bug fix, and enhancement update (IMPORTANT)
GHSA-qhgh-7273-8939
An out-of-bounds read vulnerability in Redis through 8.8.1 allows an adjacent unauthenticated attacker to cause denial of service or information disclosure by sending a specially crafted PING message to the Redis Cluster Bus port.
SUSE-SU-2026:4069-1
Security update for redis7
SUSE-SU-2026:4068-1
Security update for redis
SUSE-SU-2026:3991-1
Security update for redis7
SUSE-SU-2026:3990-1
Security update for redis
GHSA-32xw-c2hw-m34g
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. Fixed in Redis 8.2.9, 8.4.6, 8.6.6, 8.8.2, and 8.10.1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-81934 Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. Fixed in Redis 8.2.9, 8.4.6, 8.6.6, 8.8.2, and 8.10.1. | CVSS3: 7.1 | 0% Низкий | 20 дней назад | |
CVE-2026-81934 Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. | CVSS3: 7.5 | 0% Низкий | 20 дней назад | |
CVE-2026-81934 Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. | CVSS3: 7.1 | 0% Низкий | 20 дней назад | |
CVE-2026-81934 Redis contains a use-after-free vulnerability in the 'tlsProcessPendin ... | CVSS3: 7.1 | 0% Низкий | 20 дней назад | |
RLSA-2026:64807 Important: valkey security, bug fix, and enhancement update | 7 дней назад | |||
RLSA-2026:64796 Important: valkey security, bug fix, and enhancement update | 7 дней назад | |||
ELSA-2026-64807-0 ELSA-2026-64807-0: valkey security, bug fix, and enhancement update (IMPORTANT) | 9 дней назад | |||
ELSA-2026-64796-0 ELSA-2026-64796-0: valkey security, bug fix, and enhancement update (IMPORTANT) | 9 дней назад | |||
GHSA-qhgh-7273-8939 An out-of-bounds read vulnerability in Redis through 8.8.1 allows an adjacent unauthenticated attacker to cause denial of service or information disclosure by sending a specially crafted PING message to the Redis Cluster Bus port. | CVSS3: 7.1 | около 1 месяца назад | ||
SUSE-SU-2026:4069-1 Security update for redis7 | 0% Низкий | 9 дней назад | ||
SUSE-SU-2026:4068-1 Security update for redis | 0% Низкий | 9 дней назад | ||
SUSE-SU-2026:3991-1 Security update for redis7 | 0% Низкий | 10 дней назад | ||
SUSE-SU-2026:3990-1 Security update for redis | 0% Низкий | 10 дней назад | ||
GHSA-32xw-c2hw-m34g Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server. Fixed in Redis 8.2.9, 8.4.6, 8.6.6, 8.8.2, and 8.10.1. | CVSS3: 9.8 | 0% Низкий | 20 дней назад |
Уязвимостей на страницу