/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-31227

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-31227

Severity

4.4

Medium

CVSS V3

Summary

Denial-of-service due to malformed ACL selectors in Redis

Description

Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem exists in Redis 7 prior to versions 7.2.6 and 7.4.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing