[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255716

 
 

909

 
 

198991

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2023:2925-1 -- SLES redis7

ID: oval:org.secpod.oval:def:89049130Date: (C)2023-08-30   (M)2024-05-22
Class: PATCHFamily: unix




This update for redis7 fixes the following issues: * CVE-2022-24834: Fixed heap overflow in the cjson and cmsgpack libraries . * CVE-2023-28856: Fixed HINCRBYFLOAT invalid key crash . * CVE-2022-36021: Fixed integer overflow via Specially crafted SRANDMEMBER, ZRANDMEMBER, and HRANDFIELD . * CVE-2023-25155: Fixed Integer Overflow in RAND commands . * CVE-2023-28425: Fixed denial-of-service via Specially crafted MSETNX command . * CVE-2023-36824: Fixed heap overflow in COMMAND GETKEYS and ACL evaluation .

Platform:
SUSE Linux Enterprise Server 15 SP5
Product:
redis7
Reference:
SUSE-SU-2023:2925-1
CVE-2022-24834
CVE-2022-36021
CVE-2023-25155
CVE-2023-28425
CVE-2023-28856
CVE-2023-36824
CVE    6
CVE-2023-28425
CVE-2023-28856
CVE-2022-24834
CVE-2023-36824
...

© SecPod Technologies