Redis before 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions before 6.2 were not intended to have safety guarantees related to this.
{ "vanir_signatures": [ { "digest": { "length": 7030.0, "function_hash": "282123370244413014246199029746729897148" }, "target": { "function": "processCommand", "file": "src/server.c" }, "signature_type": "Function", "source": "https://github.com/redis/redis/commit/46f4ebbe842620f0976a36741a72482620aa4b48", "deprecated": false, "signature_version": "v1", "id": "CVE-2021-31294-4649935c" }, { "digest": { "line_hashes": [ "276382160438463011791802486832098299543", "81607497027349941400853452622911852480", "174079452592190344646743064570921806917", "22113432673264524511123880544413766800", "159146439693756605255239566703403474960", "308353159144754152971991578537313484920", "215022253635914417357690862670091515120", "68898065989528973432968670459207424448", "145822087540847534025611738967447833776", "75200904934883108131631146582879460284" ], "threshold": 0.9 }, "target": { "file": "src/server.c" }, "signature_type": "Line", "source": "https://github.com/redis/redis/commit/6cbea7d29b5285692843bc1c351abba1a7ef326f", "deprecated": false, "signature_version": "v1", "id": "CVE-2021-31294-987a7952" }, { "digest": { "length": 7030.0, "function_hash": "282123370244413014246199029746729897148" }, "target": { "function": "processCommand", "file": "src/server.c" }, "signature_type": "Function", "source": "https://github.com/redis/redis/commit/6cbea7d29b5285692843bc1c351abba1a7ef326f", "deprecated": false, "signature_version": "v1", "id": "CVE-2021-31294-afd6e43e" }, { "digest": { "line_hashes": [ "276382160438463011791802486832098299543", "81607497027349941400853452622911852480", "174079452592190344646743064570921806917", "22113432673264524511123880544413766800", "159146439693756605255239566703403474960", "308353159144754152971991578537313484920", "215022253635914417357690862670091515120", "68898065989528973432968670459207424448", "145822087540847534025611738967447833776", "75200904934883108131631146582879460284" ], "threshold": 0.9 }, "target": { "file": "src/server.c" }, "signature_type": "Line", "source": "https://github.com/redis/redis/commit/46f4ebbe842620f0976a36741a72482620aa4b48", "deprecated": false, "signature_version": "v1", "id": "CVE-2021-31294-e9048c40" } ] }