
Cloud Vulnerability DB
A community-led vulnerabilities database
An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly bypass intended sandbox restrictions via a large number, which triggers a stack-based buffer overflow. This vulnerability is a regression of CVE-2015-8080 (NVD, CVE).
The vulnerability is caused by an integer overflow in the getnum function within lua_struct.c. The issue was reintroduced with commit 1eb08bcd4634ae42ec45e8284923ac048beaa4c3 in Redis 5.0-rc4 and was fixed by commit ef764dde1cca2f25d00686673d1bc89448819571. The vulnerability has a CVSS v3.1 Base Score of 7.7 HIGH with vector CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H (NVD, Debian).
A successful exploitation of this vulnerability can lead to denial of service through memory corruption and application crash. Additionally, there is a possibility of sandbox restriction bypass. The vulnerability requires the attacker to have permission to run Lua code in a Redis session (NVD).
The vulnerability requires the attacker to have permission to run Lua code in a Redis session. The attack can be triggered by providing a large number that causes an integer overflow, which subsequently leads to a stack-based buffer overflow (NVD).
The vulnerability was fixed in Redis version 6.0.3. Users are advised to upgrade to this version or later. The fix was also backported to Redis 5.0.8. Organizations using affected versions should update their Redis installations to the patched versions (Github PR, Github Commit).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."