PT-2021-2663 · Redis · Redis

Published

2021-03-28

·

Updated

2021-03-28

CVSS v2.0

8.7

High

VectorAV:N/AC:L/Au:S/C:C/I:P/A:C
Name of the Vulnerable Software and Affected Versions: Redis (affected versions not specified)
Description: The issue is related to the memtest preserving test function in the memtest.c component of the Redis database management system. It involves a buffer overflow in memory when creating an emergency dump. This could allow a remote attacker to cause a denial of service or execute arbitrary code using a specially crafted set of commands.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-02192

Affected Products

Redis