vulnerability

FreeBSD: VID-5f19ac58-cc90-11ef-abed-08002784c58d (CVE-2024-46981): redis,valkey -- Remote code execution valnerability

Severity
7
CVSS
(AV:L/AC:M/Au:S/C:C/I:C/A:C)
Published
Jan 10, 2025
Added
Jan 11, 2025
Modified
Mar 25, 2026

Description

Redis core team reports: An authenticated user may use a specially crafted Lua script to manipulate the garbage collector and potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting.

Solutions

freebsd-upgrade-package-redisfreebsd-upgrade-package-redis72freebsd-upgrade-package-redis62freebsd-upgrade-package-redis-develfreebsd-upgrade-package-valkey
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.