Integer overflow in the getnum function in lua_struct.c in Redis 2.8.x before 2.8.24 and 3.0.x before 3.0.6 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly bypass intended sandbox restrictions via a large number, which triggers a stack-based buffer overflow.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | alpine-linux-upgrade-redis | Aug 30, 2017 | Apr 13, 2016 | |
| Gentoo Linux | gentoo-linux-upgrade-dev-db-redis | Oct 30, 2017 | Apr 13, 2016 | |
| Redislabs Redis | redislabs-redis-upgrade-2_8_24redislabs-redis-upgrade-3_0_6redislabs-redis-upgrade-5_0_8 | Aug 15, 2019 | Apr 13, 2016 | |
| Suse | — | suse-upgrade-redis | May 31, 2016 | Apr 13, 2016 |
| Ubuntu | ubuntu-upgrade-redis | Nov 19, 2024 | Apr 13, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub