Use-after-free in Valkey - #VU146567
Published: September 1, 2026
Vulnerability details
The vulnerability allows a remote user to execute arbitrary code or cause a denial of service.
The vulnerability exists due to use-after-free in the RDMA pending-data handler when processing pending data for RDMA connections. A remote user can run a command that frees another client\'s connection while pending data is being processed to execute arbitrary code or cause a denial of service.
Only servers built with RDMA support and configured with an RDMA listener are affected, and RDMA-capable hardware is required.