from 0, < 5:6.0.16-1+deb11u2
from 0, < 5:5.0.14-1+deb10u2
CRITICAL9.8The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to cause a denial of service (out-of-bounds array index and app…
from 0, < 4:4.0.2-5
CRITICAL9.8A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent.
from 0, < 3:3.2.4-1
HIGH8.8redis-server RESTORE invalid memory access may allow remote code execution
from 0, < 5:7.0.15-1~deb12u8
HIGH8.8Lua library commands may lead to integer overflow and potential RCE
from 0, < 5:6.0.16-1+deb11u8
HIGH8.8Lua library commands may lead to integer overflow and potential RCE
from 0, < 5:6.0.16-1+deb11u8
HIGH8.8Lua library commands may lead to integer overflow and potential RCE
from 0, < 5:7.0.15-1~deb12u6
HIGH8.8Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker.
from 0, < 5:6.0.13-1
HIGH8.4Buffer overflow in redis-cli of Redis before 4.0.10 and 5.x before 5.0 RC3 allows an attacker to achieve code execution and escalate to hig…
from 0, < 5:4.0.10-1
HIGH8.1redis-server Lua use-after-free may allow remote code execution
from 0
HIGH7.8Redis allows out of bounds writes in hyperloglog commands leading to RCE
from 0, < 5:6.0.16-1+deb11u7
HIGH7.8Redis allows out of bounds writes in hyperloglog commands leading to RCE
from 0, < 5:6.0.16-1+deb11u7
HIGH7.8Lua scripts can be manipulated to overcome ACL rules in Redis
from 0
HIGH7.5Redis DoS Vulnerability due to bad connection error handling
from 0, < 5:6.0.16-1+deb11u7
HIGH7.5A segmentation fault in the redis-server component of Redis 5.0.7 leads to a denial of service (DOS).
from 0
HIGH7.4redis - security update
from 0, < 3:3.2.7-1
HIGH7.4redis - security update
from 0, < 2:2.4.14-1+deb7u2
HIGH7.3Redis: Authenticated users can execute LUA scripts as a different user
from 0
HIGH7.1Redis is vulnerable to DoS via specially crafted LUA scripts
from 0, < 5:6.0.16-1+deb11u8
MEDIUM6.5`HINCRBYFLOAT` can be used to crash a redis-server process
from 0, < 5:6.0.16-1+deb11u3
MEDIUM6.5`HINCRBYFLOAT` can be used to crash a redis-server process
from 0, < 5:5.0.14-1+deb10u4
MEDIUM6.5Integer Overflow in several Redis commands can lead to denial of service.
from 0, < 5:6.0.16-1+deb11u3
MEDIUM5.9Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifical…
from 0
MEDIUM5.5Specially crafted MSETNX command can lead to denial-of-service
from 0, < 5:7.0.10-1
MEDIUM5.5Redis string pattern matching can be abused to achieve Denial of Service
from 0, < 5:6.0.16-1+deb11u3
MEDIUM5.5Redis string pattern matching can be abused to achieve Denial of Service
from 0, < 5:5.0.14-1+deb10u3
MEDIUM5.5A Malformed Lua script can crash Redis
from 0
MEDIUM5.5Insecure temporary file vulnerability in Redis 2.6 related to /tmp/redis.ds.
from 0, < 2:2.6.7-1
MEDIUM5.5Insecure temporary file vulnerability in Redis before 2.6 related to /tmp/redis-%p.vm.
from 0, < 2:2.6.0-1
MEDIUM5.5A permissions flaw was found in redis, which sets weak permissions on certain files and directories that could potentially contain sensitiv…
from 0, < 3:3.2.5-2
LOW3.5Redis through 8.0.3 allows memory consumption via a multi-bulk command composed of many bulks, sent by an authenticated user.
from 0
LOW3.3redis - security update
from 0, < 2:3.2.1-4
LOW3.3redis - security update
from 0, < 2:2.4.14-1+deb7u1
LOW3.3redis - security update
from 0, < 2:2.8.17-1+deb8u5
LOW3.1setDeferredReply in networking.c in Valkey through 8.1.1 has an integer underflow for prev->size - prev->used.
from 0
—redis - security update
from 0, < 2:3.0.2-1
—redis - security update
from 0, < 2:2.8.17-1+deb8u1