REDHAT-BUG-2376857: Medium severity Redis redis vulnerability
Redis is an open source, in-memory database that persists on disk. An unauthenticated connection can cause repeated IP protocol errors, leading to client starvation and, ultimately, a denial of service. This vulnerability is fixed in 8.0.3, 7.4.5, 7.2.10, and 6.2.19.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2376857?
The severity of REDHAT-BUG-2376857 is critical due to its potential to cause denial of service through client starvation.
How do I fix REDHAT-BUG-2376857?
To fix REDHAT-BUG-2376857, upgrade to Redis versions 8.0.3, 7.4.5, 7.2.10, or 6.2.19.
What causes the vulnerability REDHAT-BUG-2376857?
REDHAT-BUG-2376857 is caused by unauthenticated connections leading to repeated IP protocol errors.
What are the consequences of not addressing REDHAT-BUG-2376857?
Not addressing REDHAT-BUG-2376857 can lead to service interruption due to denial of service attacks.
Which versions of Redis are affected by REDHAT-BUG-2376857?
Redis versions prior to 8.0.3, 7.4.5, 7.2.10, and 6.2.19 are affected by REDHAT-BUG-2376857.