Количество 12
Количество 12
CVE-2022-24736
Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules.
CVE-2022-24736
Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules.
CVE-2022-24736
Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules.
CVE-2022-24736
CVE-2022-24736
Redis is an in-memory database that persists on disk. Prior to version ...
BDU:2022-02940
Уязвимость системы управления базами данных Redis, связанная с ошибками разыменования указателей, позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2022:1929-1
Security update for redis
SUSE-SU-2022:1842-1
Security update for redis
RLSA-2022:8096
Low: redis security and bug fix update
RLSA-2022:7541
Low: redis:6 security, bug fix, and enhancement update
ELSA-2022-8096
ELSA-2022-8096: redis security and bug fix update (LOW)
ELSA-2022-7541
ELSA-2022-7541: redis:6 security, bug fix, and enhancement update (LOW)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2022-24736 Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules. | CVSS3: 3.3 | 2% Низкий | почти 4 года назад | |
CVE-2022-24736 Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules. | CVSS3: 3.3 | 2% Низкий | почти 4 года назад | |
CVE-2022-24736 Redis is an in-memory database that persists on disk. Prior to versions 6.2.7 and 7.0.0, an attacker attempting to load a specially crafted Lua script can cause NULL pointer dereference which will result with a crash of the redis-server process. The problem is fixed in Redis versions 7.0.0 and 6.2.7. An additional workaround to mitigate this problem without patching the redis-server executable, if Lua scripting is not being used, is to block access to `SCRIPT LOAD` and `EVAL` commands using ACL rules. | CVSS3: 3.3 | 2% Низкий | почти 4 года назад | |
CVSS3: 5.5 | 2% Низкий | больше 3 лет назад | ||
CVE-2022-24736 Redis is an in-memory database that persists on disk. Prior to version ... | CVSS3: 3.3 | 2% Низкий | почти 4 года назад | |
BDU:2022-02940 Уязвимость системы управления базами данных Redis, связанная с ошибками разыменования указателей, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 3.3 | 2% Низкий | почти 4 года назад | |
SUSE-SU-2022:1929-1 Security update for redis | больше 3 лет назад | |||
SUSE-SU-2022:1842-1 Security update for redis | больше 3 лет назад | |||
RLSA-2022:8096 Low: redis security and bug fix update | около 3 лет назад | |||
RLSA-2022:7541 Low: redis:6 security, bug fix, and enhancement update | больше 3 лет назад | |||
ELSA-2022-8096 ELSA-2022-8096: redis security and bug fix update (LOW) | около 3 лет назад | |||
ELSA-2022-7541 ELSA-2022-7541: redis:6 security, bug fix, and enhancement update (LOW) | около 3 лет назад |
Уязвимостей на страницу