Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Cr0Hn

#36628of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2020-17382
7.5
2020-12-23
Redis · Redisgraph · CVE-2020-35668
**Name of the Vulnerable Software and Affected Versions** RedisGraph versions 2.x through 2.2.11 **Description** The issue is related to a NULL Pointer Dereference that can cause a server crash. This occurs because the software mishandles an unquoted string, such as an alias that has not yet been introduced. **Recommendations** For RedisGraph versions 2.x through 2.2.11, consider updating to a version later than 2.2.11 to resolve the issue. As a temporary workaround, consider restricting the use of unquoted strings, such as aliases that have not yet been introduced, to minimize the risk of server crashes.