ID:11239 - Exploit for Use-after-free in Redis - CVE-2024-46981
Published: March 21, 2025
Redis
Link to public exploit:
Vulnerability description
The vulnerability allows a remote user to compromise vulnerable system.
The vulnerability exists due to a use-after-free error when handling Lua script commands. A remote user can pass a specially crafted Lua script to the application and execute arbitrary code on the system..
Successful exploitation of the vulnerability may allow an attacker to compromise vulnerable system.