Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32378
HistoryOct 05, 2021 - 8:52 a.m.

Denial Of Service (DoS)

2021-10-0508:52:40
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
redis
vulnerability
denial of service
heap allocation
integer overflow
network replies

EPSS

0.009

Percentile

83.2%

Redis is vulnerable to denial of service. The vulnerability exists due to a lack of validation of overflow check before calling the calloc() heap allocation function which causes an integer overflow when parsing specially crafted large multi-bulk network replies.