PT-2025-28183 · Redis+11 · Redis+11

Leesh3288

·

Published

2025-07-06

·

Updated

2026-03-24

·

CVE-2025-32023

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions:
Redis versions 2.8 through 8.0.3, 7.4.5, 7.2.10, and 6.2.19. Valkey versions up to 8.1.3 and 8.0.4 are also affected.
Description:
Redis and Valkey are vulnerable to a heap-based buffer overflow in the HyperLogLog functionality. An authenticated attacker can exploit this vulnerability by sending a specially crafted string, potentially leading to remote code execution (RCE). The root cause is an integer overflow in the hllMerge() function when processing sparse HyperLogLog data, leading to an out-of-bounds write. A Proof-of-Concept (PoC) exploit is available. The vulnerability affects versions 2.8 and later of Redis, up to and including 8.0.3, 7.4.5, 7.2.10, and 6.2.19. Valkey versions up to 8.1.3 and 8.0.4 are also impacted.
Recommendations:
  • Upgrade Redis to version 8.0.3 or later, 7.4.5 or later, 7.2.10 or later, or 6.2.19 or later.
  • Upgrade Valkey to version 8.1.3 or 8.0.4 or later.
  • As a temporary mitigation, restrict access to HyperLogLog commands using ACLs: ACL SETUSER username -pfadd -pfcount -pfmerge.
  • Monitor for anomalous HyperLogLog operations, unexpected crashes, and unusual network traffic.
  • Limit network access to Redis and Valkey instances to trusted sources and implement robust authentication mechanisms.

Exploit

Fix

RCE

DoS

Integer Overflow

Weakness Enumeration

Related Identifiers

ALSA-2025:11401
ALSA-2025:12006
ALSA-2025:12008
ALSA-2025_12006
ALSA-2025_12008
ALSA-2025_16880
ALT-PU-2025-11673
ALT-PU-2025-13204
ALT-PU-2025-9764
ALT-PU-2025-9766
AZL-64806
AZL-64824
BDU:2025-08113
BIT-KEYDB-2025-32023
BIT-REDIS-2025-32023
BIT-VALKEY-2025-32023
CESA-2025_12006
CVE-2025-32023
DLA-4240-1
DSA-5969-1
ECHO-FCD4-8B43-5A77
GHSA-RP2M-Q4J6-GR43
INFSA-2025_11453
INFSA-2025_12006
INFSA-2025_12008
MGASA-2025-0211
OESA-2025-1850
OPENSUSE-SU-2025:15318-1
OPENSUSE-SU-2025:15359-1
RHSA-2025:11401
RHSA-2025:11453
RHSA-2025:12006
RHSA-2025:12008
RHSA-2025:12468
RHSA-2025:12478
RHSA-2025:12524
RHSA-2025:12768
RHSA-2025:12769
RHSA-2025:12789
RHSA-2025:12892
RHSA-2025_11453
RHSA-2025_12006
RHSA-2025_12008
SUSE-SU-2025:02579-1
SUSE-SU-2025:02593-1
SUSE-SU-2025:02594-1
SUSE-SU-2025:02679-1
SUSE-SU-2025:02680-1
SUSE-SU-2025:02681-1
SUSE-SU-2025:03073-1
SUSE-SU-2025_02579-1
SUSE-SU-2025_02593-1
SUSE-SU-2025_02594-1
SUSE-SU-2025_02679-1
SUSE-SU-2025_02680-1
SUSE-SU-2025_02681-1
SUSE-SU-2025_03073-1
USN-8120-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Debian
Linuxmint
Red Hat
Red Os
Redis
Rocky Linux
Suse
Ubuntu