Количество 25
Количество 25
CVE-2026-25243
Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3.
CVE-2026-25243
Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3.
CVE-2026-25243
Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3.
CVE-2026-25243
redis-server RESTORE invalid memory access may allow remote code execution
CVE-2026-25243
Redis is an in-memory data structure store. In versions of redis-serve ...
SUSE-SU-2026:2098-1
Security update for redis
RLSA-2026:26008
Important: redis:6 security update
RLSA-2026:23229
Important: redis security update
GHSA-c8h9-259x-jff4
Invalid Memory Access in Redis RESTORE Command May Lead to Remote Code Execution
ELSA-2026-26008
ELSA-2026-26008: redis:6 security update (IMPORTANT)
ELSA-2026-23229
ELSA-2026-23229: redis security update (IMPORTANT)
SUSE-SU-2026:2100-1
Security update for redis7
SUSE-SU-2026:2097-1
Security update for redis7
ROS-20260708-73-0034
Уязвимость valkey
BDU:2026-06448
Уязвимость команды RESTORE системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2026:2099-1
Security update for redis
SUSE-SU-2026:1950-1
Security update for valkey
SUSE-SU-2026:1949-1
Security update for valkey
RLSA-2026:25925
Important: valkey security update
RLSA-2026:25219
Important: redis:7 security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-25243 Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3. | CVSS3: 8.8 | 3% Низкий | 3 месяца назад | |
CVE-2026-25243 Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3. | CVSS3: 8.8 | 3% Низкий | 3 месяца назад | |
CVE-2026-25243 Redis is an in-memory data structure store. In versions of redis-server up to 8.6.3, the RESTORE command does not properly validate serialized values. An authenticated attacker with permission to execute RESTORE can supply a crafted serialized payload that triggers invalid memory access and may lead to remote code execution. A workaround is to restrict access to the RESTORE command with ACL rules. This is patched in version 8.6.3. | CVSS3: 8.8 | 3% Низкий | 3 месяца назад | |
CVE-2026-25243 redis-server RESTORE invalid memory access may allow remote code execution | 3% Низкий | около 2 месяцев назад | ||
CVE-2026-25243 Redis is an in-memory data structure store. In versions of redis-serve ... | CVSS3: 8.8 | 3% Низкий | 3 месяца назад | |
SUSE-SU-2026:2098-1 Security update for redis | 3% Низкий | 2 месяца назад | ||
RLSA-2026:26008 Important: redis:6 security update | 3% Низкий | около 2 месяцев назад | ||
RLSA-2026:23229 Important: redis security update | 3% Низкий | около 2 месяцев назад | ||
GHSA-c8h9-259x-jff4 Invalid Memory Access in Redis RESTORE Command May Lead to Remote Code Execution | 3% Низкий | 3 месяца назад | ||
ELSA-2026-26008 ELSA-2026-26008: redis:6 security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-23229 ELSA-2026-23229: redis security update (IMPORTANT) | около 1 месяца назад | |||
SUSE-SU-2026:2100-1 Security update for redis7 | 2 месяца назад | |||
SUSE-SU-2026:2097-1 Security update for redis7 | 2 месяца назад | |||
ROS-20260708-73-0034 Уязвимость valkey | CVSS3: 8.8 | 3% Низкий | 25 дней назад | |
BDU:2026-06448 Уязвимость команды RESTORE системы управления базами данных (СУБД) Redis, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 3% Низкий | 3 месяца назад | |
SUSE-SU-2026:2099-1 Security update for redis | 2 месяца назад | |||
SUSE-SU-2026:1950-1 Security update for valkey | 3 месяца назад | |||
SUSE-SU-2026:1949-1 Security update for valkey | 3 месяца назад | |||
RLSA-2026:25925 Important: valkey security update | около 2 месяцев назад | |||
RLSA-2026:25219 Important: redis:7 security update | около 2 месяцев назад |
Уязвимостей на страницу