Integer overflow in the getnum function in lua_struct.c in Redis 2.8.x before 2.8.24 and 3.0.x before 3.0.6 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly bypass intended sandbox restrictions via a large number, which triggers a stack-based buffer overflow.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade redis | Aug 30, 2017 | Apr 13, 2016 |
| Debian | — | Upgrade redis | Dec 7, 2015 | Dec 3, 2015 |
| Gentoo Linux | — | Upgrade dev-db/redis. | Oct 30, 2017 | Apr 13, 2016 |
| Redislabs Redis | — | Upgrade RedisLabs Redis to version 3.0.6Upgrade RedisLabs Redis to version 5.0.8Upgrade RedisLabs Redis to version 2.8.24 | Aug 15, 2019 | Apr 13, 2016 |
| Suse | — | Upgrade redis | May 31, 2016 | Apr 13, 2016 |
| Ubuntu | — | Upgrade redis | Nov 19, 2024 | Apr 13, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub