Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.148871
Category:Databases
Title:Redis <= 7.0.5 DoS Vulnerability
Summary:Redis is prone to a denial of service (DoS) vulnerability.
Description:Summary:
Redis is prone to a denial of service (DoS) vulnerability.

Vulnerability Insight:
A vulnerability, which was classified as problematic, was
found in Redis. Affected is the function sigsegvHandler of the file debug.c of the component
Crash Report. The manipulation leads to denial of service.
The real existence of this vulnerability is still doubted at the moment. The name of the
patch is 0bf90d944313919eb8e63d3588bf63a367f020a3. It is recommended to apply a patch to fix
this issue. VDB-211962 is the identifier assigned to this vulnerability.

NOTE: The vendor claims that this is not a DoS because it applies to the crash logging
mechanism which is triggered after a crash has occurred.

Affected Software/OS:
Redis version 7.0.5 and prior.

Solution:
Apply the referenced patch.

CVSS Score:
1.7

CVSS Vector:
AV:L/AC:L/Au:S/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-3647
https://github.com/redis/redis/commit/0bf90d944313919eb8e63d3588bf63a367f020a3
https://vuldb.com/?ctiid.211962
https://vuldb.com/?id.211962
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.