Known vulnerabilities in redis (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:redis_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 21
Public exploits: 7
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting redis (Red Hat package) redis (Red Hat package) is affected by 21 known vulnerabilities: 4 high, 16 medium, 1 low Critical High Medium Low

Vulnerabilities (21)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130203 - Heap-based Buffer Overflow
CVE-2026-25243
CWE-122 Medium
No
No
6.2.7-1.el9_4.6 05.05.2026 SB20260505114
SB20260509119
SB20260509120
and 23 more
#VU116641 - Improper Authentication
CVE-2025-46818
CWE-287 Medium
Available
No
6.2.20-1.el9_6 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 38 more
#VU116640 - Out-of-bounds read
CVE-2025-46819
CWE-125 Medium
Available
No
6.2.20-1.el9_6 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 38 more
#VU116639 - Integer overflow
CVE-2025-46817
CWE-190 High
Available
No
6.2.6-1.el9_0.5, 6.2.7-1.el9_2.5, 6.2.7-1.el9_4.5, 6.2.20-1.el9_6 07.10.2025 SB2025100706
SB2025100709
SB2025100710
and 45 more
#VU116609 - Use After Free
CVE-2025-49844
CWE-416 Medium
Available
No
6.2.6-1.el9_0.5, 6.2.7-1.el9_2.5, 6.2.7-1.el9_4.5, 6.2.20-1.el9_6 06.10.2025 SB2025100629
SB2025100633
SB2025100709
and 56 more
#VU112337 - Resource Management Errors
CVE-2025-48367
CWE-399 Medium
No
No
6.2.6-1.el9_0.4, 6.2.7-1.el9_2.4, 6.2.7-1.el9_4.4 07.07.2025 SB2025070725
SB20250716110
SB20250716111
and 31 more
#VU112336 - Out-of-bounds write
CVE-2025-32023
CWE-787 Medium
Available
No
6.2.6-1.el9_0.4, 6.2.7-1.el9_2.4, 6.2.7-1.el9_4.4 07.07.2025 SB2025070725
SB20250716110
SB20250716111
and 32 more
#VU107885 - Resource Management Errors
CVE-2025-21605
CWE-399 Medium
No
No
6.2.6-1.el9_0.2, 6.2.7-1.el9_2.2, 6.2.7-1.el9_4.2, 6.2.18-1.el9_6 23.04.2025 SB2025042342
SB2025042455
SB2025042456
and 33 more
#VU102383 - Use After Free
CVE-2024-46981
CWE-416 Medium
Available
No
6.2.6-1.el9_0.1, 6.2.7-1.el9_2.1, 6.2.7-1.el9_4.1, 6.2.17-1.el9_5 06.01.2025 SB2025010646
SB2025010647
SB2025010901
and 39 more
#VU97972 - Improper input validation
CVE-2024-31228
CWE-20 Medium
No
No
6.2.17-1.el9_5 02.10.2024 SB2024100272
SB2024100323
SB2024100324
and 31 more
#VU97970 - Stack-based buffer overflow
CVE-2024-31449
CWE-121 Medium
No
No
6.2.17-1.el9_5 02.10.2024 SB2024100272
SB2024100323
SB2024100324
and 33 more
#VU82200 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2023-45145
CWE-362 Low
No
No
6.2.17-1.el9_5 18.10.2023 SB2023101841
SB2023101848
SB2023101849
and 30 more
#VU78506 - Heap-based Buffer Overflow
CVE-2022-24834
CWE-122 Medium
Available
No
6.2.17-1.el9_5 21.07.2023 SB2023072126
SB2023072127
SB2023072128
and 21 more
#VU62693 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24735
CWE-94 Medium
No
No
6.2.7-1.el9 29.04.2022 SB2022042901
SB2022060701
SB2022071948
and 14 more
#VU62692 - NULL Pointer Dereference
CVE-2022-24736
CWE-476 Medium
No
No
6.2.7-1.el9 29.04.2022 SB2022042901
SB2022060701
SB2022092953
and 15 more
#VU57034 - Improper input validation
CVE-2021-32675
CWE-20 Medium
No
No
3.2.8-5.el7ost 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 24 more
#VU57029 - Integer overflow
CVE-2021-41099
CWE-190 High
No
No
3.2.8-5.el7ost 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 22 more
#VU57031 - Integer overflow
CVE-2021-32687
CWE-190 Medium
No
No
3.2.8-5.el7ost 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 22 more
#VU57032 - Integer overflow
CVE-2021-32628
CWE-190 High
No
No
3.2.8-5.el7ost 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 22 more
#VU57033 - Integer overflow
CVE-2021-32627
CWE-190 High
No
No
3.2.8-5.el7ost 04.10.2021 SB2021100404
SB2021102001
SB2021102109
and 22 more


Showing elements 1 - 20 out of 21