Memory Leak Vulnerability in Redis from Redis Labs
CVE-2022-33105

7.5HIGH

Key Information:

Vendor
Redis
Status
Vendor
CVE Published:
23 June 2022

Summary

Redis v7.0 contains a memory leak vulnerability within the streamGetEdgeID component. This issue can lead to increased memory consumption over time, potentially affecting the performance and stability of the application. It is essential for users to apply the latest patches to mitigate this risk and ensure optimal system functionality. For more technical details and fixes, refer to the relevant GitHub commits and security advisories.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2022-33105 : Memory Leak Vulnerability in Redis from Redis Labs | SecurityVulnerability.io