Lucene search

K
redhatRedHatRHSA-2021:3980
HistoryOct 25, 2021 - 5:48 p.m.

(RHSA-2021:3980) Important: Red Hat OpenStack Platform 13.0 (redis) security update

2021-10-2517:48:44
access.redhat.com
20

0.023 Low

EPSS

Percentile

89.8%

Redis is an advanced key-value store.

Security Fix(es):

  • Lua scripts can overflow the heap-based Lua stack (CVE-2021-32626)

  • Integer overflow issue with Streams (CVE-2021-32627)

  • Integer overflow bug in the ziplist data structure (CVE-2021-32628)

  • Denial of service via Redis Standard Protocol (RESP) request
    (CVE-2021-32675)

  • Integer overflow issue with intsets (CVE-2021-32687)

  • Integer overflow issue with strings (CVE-2021-41099)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page listed in the References section.