Use-After-Free in unblock client flow may lead to remote code execution
Redis security advisories
All 47 advisories Redis has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.
- Advisories
- 47 45 carry a CVE
- critical
- 1
- high
- 27
- medium
- 14
- low
- 5
- Fix in the archive
- 2 of 47 matched to a release
- Oldest
- 23 Feb 2021 5.6 years ago
45 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.
Newest first
Every productLua Use-After-Free may lead to remote code execution
Invalid Memory Access in Redis RESTORE Command May Lead to Remote Code Execution
Bug in XACKDEL may lead to stack overflow and potential RCE
Running Lua function as a different user
Out of bound read due to a bug in LUA
Lua library commands may lead to integer overflow and potential RCE
Lua Use-After-Free may lead to remote code execution
Redis DoS Vulnerability due to bad connection error handling
Out of bounds write in hyperloglog commands leads to RCE
Multi-bulk commands sent by clients can lead to DoS
redis-check-aof may lead to stack overflow and potential RCE
Redis DoS Vulnerability due to unlimited growth of output buffers abused by unauthenticated client
Lua library commands may lead to remote code execution
Denial-of-service due to malformed ACL selectors
Denial-of-service due to unbounded pattern matching
Denial-of-service due to malformed ACL selectors
Lua library commands may lead to stack overflow and potential RCE
Certain sequence of payloads may lead to remote code execution
Redis Unix-domain socket may be exposed with the wrong permissions for a short time window.
Redis SORT_RO may bypass ACL configuration
Heap overflow issue with the Lua cjson and cmsgpack libraries used by Redis
Heap overflow in COMMAND GETKEYS and ACL evaluation
HINCRBYFLOAT can be used to crash a redis-server process
Specially crafted MSETNX command can lead to denial-of-service
Redis string pattern matching can be abused to achieve Denial of Service
Integer Overflow in several Redis commands can lead to denial of service.
Integer overflow in the Redis SETRANGE and SORT/SORT_RO commands may result with false OOM panic
Integer overflow in the Redis HRANDFIELD and ZRANDMEMBER commands may lead to denial-of-service
Heap overflow in Redis 7.0 XAUTOCLAIM command's COUNT argument.
Potential heap overflow in Redis 7.0 XAUTOCLAIM command.
DEBUG command is dangerous and enabled by default
A Malformed Lua script can crash Redis
Lua scripts can be manipulated to overcome ACL rules
Lua scripts can overflow the heap-based Lua stack
Integer overflow issue with Streams
Vulnerability in handling large ziplists
Vulnerability in Lua Debugger
DoS vulnerability in Redis
Integer overflow issue with intsets
Integer overflow that can lead to heap overflow in redis-cli, redis-sentinel on some platforms
Integer overflow issue with strings
Integer overflow issues with BITFIELD command on 32-bit systems
Vulnerability in STRALGO LCS
Vulnerability in the STRALGO LCS command
Vulnerability in the COPY command for large intsets
Integer overflow on 32-bit systems