stable

redis-7.2.4-1.fc39

FEDORA-2024-6ef42a28c9 created by remi 9 months ago for Fedora 39

**Redis 7.2.4 ** Released Tue 09 Jan 2024 10:45:52 IST

Upgrade urgency SECURITY: See security fixes below.

Security fixes

  • (CVE-2023-41056) In some cases, Redis may incorrectly handle resizing of memory buffers which can result in incorrect accounting of buffer sizes and lead to heap overflow and potential remote code execution.

Bug fixes

  • Fix crashes of cluster commands clusters with mixed versions of 7.0 and 7.2 (#12805, #12832)
  • Fix slot ownership not being properly handled when deleting a slot from a node (#12564)
  • Fix atomicity issues with the RedisModuleEvent_Key module API event (#12733)

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-6ef42a28c9

This update has been submitted for testing by remi.

9 months ago

This update's test gating status has been changed to 'ignored'.

9 months ago

This update has been pushed to testing.

9 months ago

remi edited this update.

9 months ago

This update has been submitted for stable by bodhi.

9 months ago

This update has been pushed to stable.

9 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
0
Signed
Content Type
RPM
Test Gating
Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
7 days
Dates
submitted
9 months ago
in testing
9 months ago
in stable
9 months ago
modified
9 months ago
approved
9 months ago
BZ#2257454 CVE-2023-41056 redis: Heap Buffer Overflow may lead to potential remote code execution
0
0
BZ#2257455 TRIAGE CVE-2023-41056 redis: Heap Buffer Overflow may lead to potential remote code execution [fedora-all]
0
0

Automated Test Results