5.9
CVSSv3

CVE-2021-31294

Published: 15/07/2023 Updated: 14/08/2023
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 0

Vulnerability Summary

Redis prior to 6cbea7d allows a replica to cause an assertion failure in a primary server by sending a non-administrative command (specifically, a SET command). NOTE: this was fixed for Redis 6.2.x and 7.x in 2021. Versions prior to 6.2 were not intended to have safety guarantees related to this.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redis redis

Vendor Advisories

Description<!----> This CVE is under investigation by Red Hat Product Security ...