CVE-2020-14147
Redis vulnerability analysis and mitigation

Overview

An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3 allows context-dependent attackers with permission to run Lua code in a Redis session to cause a denial of service (memory corruption and application crash) or possibly bypass intended sandbox restrictions via a large number, which triggers a stack-based buffer overflow. This vulnerability is a regression of CVE-2015-8080 (NVD, CVE).

Technical details

The vulnerability is caused by an integer overflow in the getnum function within lua_struct.c. The issue was reintroduced with commit 1eb08bcd4634ae42ec45e8284923ac048beaa4c3 in Redis 5.0-rc4 and was fixed by commit ef764dde1cca2f25d00686673d1bc89448819571. The vulnerability has a CVSS v3.1 Base Score of 7.7 HIGH with vector CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H (NVD, Debian).

Impact

A successful exploitation of this vulnerability can lead to denial of service through memory corruption and application crash. Additionally, there is a possibility of sandbox restriction bypass. The vulnerability requires the attacker to have permission to run Lua code in a Redis session (NVD).

Exploitability

The vulnerability requires the attacker to have permission to run Lua code in a Redis session. The attack can be triggered by providing a large number that causes an integer overflow, which subsequently leads to a stack-based buffer overflow (NVD).

Mitigation and workarounds

The vulnerability was fixed in Redis version 6.0.3. Users are advised to upgrade to this version or later. The fix was also backported to Redis 5.0.8. Organizations using affected versions should update their Redis installations to the patched versions (Github PR, Github Commit).

Additional resources


SourceThis report was generated using AI

Related Redis vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-25589HIGH7.7
  • Redis logoRedis
  • redis
NoYesMay 05, 2026
CVE-2026-25588HIGH7.7
  • Redis logoRedis
  • cpe:2.3:a:redis:redis
NoYesMay 05, 2026
CVE-2026-25243HIGH7.7
  • Redis logoRedis
  • valkey-rdma-debuginfo
NoYesMay 05, 2026
CVE-2026-66373HIGH7.5
  • Redis logoRedis
  • cpe:2.3:a:redis:redis
NoYesJul 25, 2026
CVE-2026-23631MEDIUM6.1
  • Redis logoRedis
  • redis-devel
NoYesMay 05, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management