A flaw was found in Redis community. The cluster bus packet parser, responsible for handling PING, PONG, and MEET packets, fails to properly validate string-carrying extensions for null-termination. This oversight allows a remote attacker to craft a malicious packet, leading to an out-of-bounds read when the packet's payload is processed. Successful exploitation of this vulnerability could result in the disclosure of sensitive information or a remote denial of service (DoS).
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "redis",
"binary_version": "5:7.0.15-1ubuntu0.24.04.5"
},
{
"binary_name": "redis-sentinel",
"binary_version": "5:7.0.15-1ubuntu0.24.04.5"
},
{
"binary_name": "redis-server",
"binary_version": "5:7.0.15-1ubuntu0.24.04.5"
},
{
"binary_name": "redis-tools",
"binary_version": "5:7.0.15-1ubuntu0.24.04.5"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "redis",
"binary_version": "5:8.0.5-1ubuntu0.1"
},
{
"binary_name": "redis-sentinel",
"binary_version": "5:8.0.5-1ubuntu0.1"
},
{
"binary_name": "redis-server",
"binary_version": "5:8.0.5-1ubuntu0.1"
},
{
"binary_name": "redis-tools",
"binary_version": "5:8.0.5-1ubuntu0.1"
}
]
}