Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.
References
Link | Resource |
---|---|
https://github.com/redis/redis/pull/10829 | Exploit Issue Tracking Release Notes Third Party Advisory |
https://github.com/redis/redis/commit/4a7a4e42db8ff757cdf3f4a824f66426036034ef | Patch Third Party Advisory |
https://github.com/redis/redis/pull/10753 | Exploit Issue Tracking Patch Third Party Advisory |
https://raw.githubusercontent.com/redis/redis/7.0.1/00-RELEASENOTES | Release Notes Third Party Advisory |
https://security.netapp.com/advisory/ntap-20220729-0005/ | Third Party Advisory |
https://security.gentoo.org/glsa/202209-17 | Third Party Advisory |
Configurations
Information
Published : 2022-06-23 10:15
Updated : 2022-10-07 08:49
NVD link : CVE-2022-33105
Mitre link : CVE-2022-33105
JSON object : View
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
Products Affected
redis
- redis