Логотип exploitDog
bind:CVE-2025-46686
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-46686

Количество 6

Количество 6

ubuntu логотип

CVE-2025-46686

4 месяца назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
nvd логотип

CVE-2025-46686

4 месяца назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
EPSS: Низкий
debian логотип

CVE-2025-46686

4 месяца назад

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-f46f-fjf4-h4m2

4 месяца назад

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
EPSS: Низкий
fstec логотип

BDU:2025-09083

4 месяца назад

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий
redos логотип

ROS-20250904-12

2 месяца назад

Множественные уязвимости redis

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions. NOTE: this is disputed by the Supplier because abuse of the commands network protocol is not a violation of the Redis Security Model.

CVSS3: 3.5
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-46686

Redis through 8.0.3 allows memory consumption via a multi-bulk command ...

CVSS3: 3.5
0%
Низкий
4 месяца назад
github логотип
GHSA-f46f-fjf4-h4m2

Redis through 7.4.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user. This occurs because the server allocates memory for the command arguments of every bulk, even when the command is skipped because of insufficient permissions.

CVSS3: 4.9
0%
Низкий
4 месяца назад
fstec логотип
BDU:2025-09083

Уязвимость системы управления базами данных (СУБД) Redis, связанная с неконтролируемым распределением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
0%
Низкий
4 месяца назад
redos логотип
ROS-20250904-12

Множественные уязвимости redis

CVSS3: 4.9
2 месяца назад

Уязвимостей на страницу