Hiredis是一款用于Redis数据库的C语言客户端。 Hiredis 存在安全漏洞,该漏洞允许攻击者提供恶意制作或损坏的RESP、mult-bulk 协议数据,可导致整数溢出。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-32626 | 7.5 HIGH | Lua scripts can overflow the heap-based Lua stack in Redis |
| CVE-2021-32627 | 7.5 HIGH | Integer overflow issue with Streams in Redis |
| CVE-2021-32628 | 7.5 HIGH | Vulnerability in handling large ziplists |
| CVE-2021-32675 | 7.5 HIGH | DoS vulnerability in Redis |
| CVE-2021-32687 | 7.5 HIGH | Integer overflow issue with intsets in Redis |
| CVE-2021-32762 | 7.5 HIGH | Integer overflow that can lead to heap overflow in redis-cli, redis-sentinel on some platf |
| CVE-2021-41099 | 7.5 HIGH | Integer overflow issue with strings in Redis |
| CVE-2021-32672 | 5.3 MEDIUM | Vulnerability in Lua Debugger in Redis |
No comments yet