Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
CVSS Details
- CVSS 4.0 Base Score: 7.5 (HIGH)
- CVSS 4.0 Vector: (CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X)
- CVSS 3.1 Base Score: 7.1
- CVSS 3.1 Vector: (CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Redhat_linux | — | Upgrade redis-docUpgrade redis-develUpgrade redis-debugsourceUpgrade redis-debuginfoUpgrade redis | Sep 3, 2026 | Aug 27, 2026 |
| Redislabs Redis | — | Upgrade RedisLabs Redis to version 7.2.16Upgrade RedisLabs Redis to version 8.2.9Upgrade RedisLabs Redis to version 7.4.11Upgrade RedisLabs Redis to version 6.2.24Upgrade RedisLabs Redis to version 8.6.6Upgrade RedisLabs Redis to version 8.8.2Upgrade RedisLabs Redis to version 8.4.6Upgrade RedisLabs Redis to version 8.10.1 | Aug 28, 2026 | Aug 27, 2026 |
| Rocky_linux | — | Upgrade redisUpgrade redis-debugsourceUpgrade redis-debuginfoUpgrade redis-devel | Sep 10, 2026 | Sep 9, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub