Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47004.json",
"cna_assigner": "mitre"
}{
"cpe": "cpe:2.3:a:redislabs:redisgraph:*:*:*:*:*:*:*:*",
"source": [
"DESCRIPTION",
"CPE_RANGE"
],
"extracted_events": [
{
"introduced": "v.2.x"
},
{
"fixed": "v.2.12.8"
},
{
"introduced": "2.0.0"
},
{
"fixed": "2.12.9"
}
]
}[
{
"digest": {
"length": 331.0,
"function_hash": "131347100829225143602134050935760397726"
},
"signature_version": "v1",
"source": "https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b",
"signature_type": "Function",
"target": {
"function": "OpBase_PropagateReset",
"file": "src/execution_plan/ops/op.c"
},
"id": "CVE-2023-47004-16c816a3",
"deprecated": false
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"174243879673421889489411412717855910628",
"50347943674815831598971986052321526468",
"214122889479866941231410254755282949956",
"292140202894790645004500454712669526176"
]
},
"signature_version": "v1",
"source": "https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b",
"signature_type": "Line",
"target": {
"file": "src/execution_plan/ops/op.c"
},
"id": "CVE-2023-47004-4f08da1b",
"deprecated": false
}
]
"2026-07-22T02:50:10Z"
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-47004.json"