/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-31227

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-31227

Severity

4.4

Medium

CVSS V3

Summary

Denial-of-service due to malformed ACL selectors in Redis

Description

Redis is an open source, in-memory database that persists on disk. An authenticated with sufficient privileges may create a malformed ACL selector which, when accessed, triggers a server panic and subsequent denial of service. The problem exists in Redis 7 prior to versions 7.2.6 and 7.4.1. Users are advised to upgrade. There are no known workarounds for this vulnerability.

References

  • https://images.chainguard.dev/security/CGA-5rq8-r8w6-vhc6

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing