Логотип exploitDog
bind:"CVE-2022-24834"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-24834"

Количество 13

Количество 13

ubuntu логотип

CVE-2022-24834

больше 2 лет назад

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
EPSS: Средний
redhat логотип

CVE-2022-24834

больше 2 лет назад

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
EPSS: Средний
nvd логотип

CVE-2022-24834

больше 2 лет назад

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
EPSS: Средний
msrc логотип

CVE-2022-24834

больше 2 лет назад

Heap overflow issue with the Lua cjson library used by Redis

CVSS3: 8.8
EPSS: Средний
debian логотип

CVE-2022-24834

больше 2 лет назад

Redis is an in-memory database that persists on disk. A specially craf ...

CVSS3: 7
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2023:2924-1

больше 2 лет назад

Security update for redis

EPSS: Средний
fstec логотип

BDU:2023-07213

больше 2 лет назад

Уязвимость библиотек cjson и cmsgpack системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2023:3407-1

около 2 лет назад

Security update for redis

EPSS: Низкий
redos логотип

ROS-20240726-03

больше 1 года назад

Уязвимость redis

CVSS3: 8.8
EPSS: Средний
rocky логотип

RLSA-2025:0693

8 месяцев назад

Important: redis security update

EPSS: Низкий
oracle-oval логотип

ELSA-2025-0693

10 месяцев назад

ELSA-2025-0693: redis security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2925-1

больше 2 лет назад

Security update for redis7

EPSS: Низкий
oracle-oval логотип

ELSA-2025-0595

10 месяцев назад

ELSA-2025-0595: redis:6 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-24834

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
38%
Средний
больше 2 лет назад
redhat логотип
CVE-2022-24834

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
38%
Средний
больше 2 лет назад
nvd логотип
CVE-2022-24834

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all versions of Redis with Lua scripting support, starting from 2.6, and affects only authenticated and authorized users. The problem is fixed in versions 7.0.12, 6.2.13, and 6.0.20.

CVSS3: 7
38%
Средний
больше 2 лет назад
msrc логотип
CVE-2022-24834

Heap overflow issue with the Lua cjson library used by Redis

CVSS3: 8.8
38%
Средний
больше 2 лет назад
debian логотип
CVE-2022-24834

Redis is an in-memory database that persists on disk. A specially craf ...

CVSS3: 7
38%
Средний
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2924-1

Security update for redis

38%
Средний
больше 2 лет назад
fstec логотип
BDU:2023-07213

Уязвимость библиотек cjson и cmsgpack системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
38%
Средний
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3407-1

Security update for redis

около 2 лет назад
redos логотип
ROS-20240726-03

Уязвимость redis

CVSS3: 8.8
38%
Средний
больше 1 года назад
rocky логотип
RLSA-2025:0693

Important: redis security update

8 месяцев назад
oracle-oval логотип
ELSA-2025-0693

ELSA-2025-0693: redis security update (IMPORTANT)

10 месяцев назад
suse-cvrf логотип
SUSE-SU-2023:2925-1

Security update for redis7

больше 2 лет назад
oracle-oval логотип
ELSA-2025-0595

ELSA-2025-0595: redis:6 security update (IMPORTANT)

10 месяцев назад

Уязвимостей на страницу