[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252588

 
 

909

 
 

196930

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2021:3772-1 -- SLES redis

ID: oval:org.secpod.oval:def:89047330Date: (C)2022-10-21   (M)2023-11-13
Class: PATCHFamily: unix




This update for redis fixes the following issues: - CVE-2021-32627: Fixed integer to heap buffer overflows with streams . - CVE-2021-32628: Fixed integer to heap buffer overflows handling ziplist-encoded data types . - CVE-2021-32687: Fixed integer to heap buffer overflow with intsets . - CVE-2021-32762: Fixed integer to heap buffer overflow issue in redis-cli and redis-sentinel . - CVE-2021-32626: Fixed heap buffer overflow caused by specially crafted Lua scripts . - CVE-2021-32672: Fixed random heap reading issue with Lua Debugger . - CVE-2021-32675: Fixed Denial Of Service when processing RESP request payloads with a large number of elements on many connections . - CVE-2021-41099: Fixed integer to heap buffer overflow handling certain string commands and network payloads .

Platform:
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
Product:
redis
Reference:
SUSE-SU-2021:3772-1
CVE-2021-32626
CVE-2021-32627
CVE-2021-32628
CVE-2021-32672
CVE-2021-32675
CVE-2021-32687
CVE-2021-32762
CVE-2021-41099
CVE    8
CVE-2021-32762
CVE-2021-32672
CVE-2021-32628
CVE-2021-32626
...
CPE    3
cpe:/a:redis:redis
cpe:/o:suse:suse_linux_enterprise_server:15:sp3
cpe:/o:suse:suse_linux_enterprise_server:15:sp2

© SecPod Technologies