Known vulnerabilities in redis (Red Hat package)
Vendor:
Red Hat Inc.
Software:
redis (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:redis_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
21
Public exploits:
7
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.2.7-1.el9_4.6
6.2.20-1.el9_6
6.2.7-1.el9_4.5
6.2.7-1.el9_2.5
6.2.6-1.el9_0.5
6.2.7-1.el9_4.4
6.2.7-1.el9_2.4
6.2.6-1.el9_0.4
6.2.18-1.el9_6
6.2.7-1.el9_2.2
6.2.7-1.el9_4.2
6.2.6-1.el9_0.2
6.2.17-1.el9_5
6.2.6-1.el9_0.1
6.2.7-1.el9_4.1
6.2.7-1.el9_2.1
2.8.21-1.el7ost
6.2.7-1.el9
3.2.8-5.el7ost
3.2.8-4.el7ost
3.0.6-5.el7ost
3.2.8-3.el7ost
3.0.6-4.el7ost
3.0.6-2.el7ost
2.8.21-2.el7map
2.8.24-1.el7ost
3.2.8-4.el7
3.2.8-3.el7
3.2.8-2.el7
3.2.8-1.el7
3.0.6-5.el7
3.0.6-4.el7
3.0.6-2.el7
3.0.6-1.el7
2.8.24-1.el7
2.8.21-1.el7
2.8.15-2.el7
2.8.21-2.el7
Vulnerabilities (21)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU130203 - Heap-based Buffer Overflow CVE-2026-25243 |
CWE-122 | Medium | 6.2.7-1.el9_4.6 | 05.05.2026 |
SB20260505114 SB20260509119 SB20260509120 and 23 more |
||
| #VU116641 - Improper Authentication CVE-2025-46818 |
CWE-287 | Medium | 6.2.20-1.el9_6 | 07.10.2025 |
SB2025100706 SB2025100709 SB2025100710 and 38 more |
||
| #VU116640 - Out-of-bounds read CVE-2025-46819 |
CWE-125 | Medium | 6.2.20-1.el9_6 | 07.10.2025 |
SB2025100706 SB2025100709 SB2025100710 and 38 more |
||
| #VU116639 - Integer overflow CVE-2025-46817 |
CWE-190 | High | 6.2.6-1.el9_0.5, 6.2.7-1.el9_2.5, 6.2.7-1.el9_4.5, 6.2.20-1.el9_6 | 07.10.2025 |
SB2025100706 SB2025100709 SB2025100710 and 45 more |
||
| #VU116609 - Use After Free CVE-2025-49844 |
CWE-416 | Medium | 6.2.6-1.el9_0.5, 6.2.7-1.el9_2.5, 6.2.7-1.el9_4.5, 6.2.20-1.el9_6 | 06.10.2025 |
SB2025100629 SB2025100633 SB2025100709 and 56 more |
||
| #VU112337 - Resource Management Errors CVE-2025-48367 |
CWE-399 | Medium | 6.2.6-1.el9_0.4, 6.2.7-1.el9_2.4, 6.2.7-1.el9_4.4 | 07.07.2025 |
SB2025070725 SB20250716110 SB20250716111 and 31 more |
||
| #VU112336 - Out-of-bounds write CVE-2025-32023 |
CWE-787 | Medium | 6.2.6-1.el9_0.4, 6.2.7-1.el9_2.4, 6.2.7-1.el9_4.4 | 07.07.2025 |
SB2025070725 SB20250716110 SB20250716111 and 32 more |
||
| #VU107885 - Resource Management Errors CVE-2025-21605 |
CWE-399 | Medium | 6.2.6-1.el9_0.2, 6.2.7-1.el9_2.2, 6.2.7-1.el9_4.2, 6.2.18-1.el9_6 | 23.04.2025 |
SB2025042342 SB2025042455 SB2025042456 and 33 more |
||
| #VU102383 - Use After Free CVE-2024-46981 |
CWE-416 | Medium | 6.2.6-1.el9_0.1, 6.2.7-1.el9_2.1, 6.2.7-1.el9_4.1, 6.2.17-1.el9_5 | 06.01.2025 |
SB2025010646 SB2025010647 SB2025010901 and 39 more |
||
| #VU97972 - Improper input validation CVE-2024-31228 |
CWE-20 | Medium | 6.2.17-1.el9_5 | 02.10.2024 |
SB2024100272 SB2024100323 SB2024100324 and 31 more |
||
| #VU97970 - Stack-based buffer overflow CVE-2024-31449 |
CWE-121 | Medium | 6.2.17-1.el9_5 | 02.10.2024 |
SB2024100272 SB2024100323 SB2024100324 and 33 more |
||
| #VU82200 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') CVE-2023-45145 |
CWE-362 | Low | 6.2.17-1.el9_5 | 18.10.2023 |
SB2023101841 SB2023101848 SB2023101849 and 30 more |
||
| #VU78506 - Heap-based Buffer Overflow CVE-2022-24834 |
CWE-122 | Medium | 6.2.17-1.el9_5 | 21.07.2023 |
SB2023072126 SB2023072127 SB2023072128 and 21 more |
||
| #VU62693 - Improper Control of Generation of Code ('Code Injection') CVE-2022-24735 |
CWE-94 | Medium | 6.2.7-1.el9 | 29.04.2022 |
SB2022042901 SB2022060701 SB2022071948 and 14 more |
||
| #VU62692 - NULL Pointer Dereference CVE-2022-24736 |
CWE-476 | Medium | 6.2.7-1.el9 | 29.04.2022 |
SB2022042901 SB2022060701 SB2022092953 and 15 more |
||
| #VU57034 - Improper input validation CVE-2021-32675 |
CWE-20 | Medium | 3.2.8-5.el7ost | 04.10.2021 |
SB2021100404 SB2021102001 SB2021102109 and 24 more |
||
| #VU57029 - Integer overflow CVE-2021-41099 |
CWE-190 | High | 3.2.8-5.el7ost | 04.10.2021 |
SB2021100404 SB2021102001 SB2021102109 and 22 more |
||
| #VU57031 - Integer overflow CVE-2021-32687 |
CWE-190 | Medium | 3.2.8-5.el7ost | 04.10.2021 |
SB2021100404 SB2021102001 SB2021102109 and 22 more |
||
| #VU57032 - Integer overflow CVE-2021-32628 |
CWE-190 | High | 3.2.8-5.el7ost | 04.10.2021 |
SB2021100404 SB2021102001 SB2021102109 and 22 more |
||
| #VU57033 - Integer overflow CVE-2021-32627 |
CWE-190 | High | 3.2.8-5.el7ost | 04.10.2021 |
SB2021100404 SB2021102001 SB2021102109 and 22 more |
Showing elements 1 - 20 out of 21