Логотип exploitDog
bind:CVE-2025-46686
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-46686

Количество 5

Количество 5

ubuntu логотип

CVE-2025-46686

18 дней назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-46686

18 дней назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-46686

18 дней назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-f46f-fjf4-h4m2

18 дней назад

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
EPSS: Низкий
fstec логотип

BDU:2025-09083

19 дней назад

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
18 дней назад
nvd логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
18 дней назад
debian логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
0%
Низкий
18 дней назад
github логотип
GHSA-f46f-fjf4-h4m2

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
0%
Низкий
18 дней назад
fstec логотип
BDU:2025-09083

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
0%
Низкий
19 дней назад

Уязвимостей на страницу