SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Redis LUA Use-After-Free

Category: WEB-ATTACKS      

Redis is an open source, in-memory database that persists on disk. Versions 8.2.1 and below allow an authenticated user to use a specially crafted Lua script to manipulate the garbage collector, trigger a use-after-free and potentially lead to remote code execution. The problem exists in all versions of Redis with Lua scripting.


Relevant Information