redis-6.2.24-1.el9_8
エラータID: AXSA:2026-1829:03
Redis is an advanced key-value store. It is often referred to as a data-structure server since keys can contain strings, hashes, lists, sets, and sorted sets. For performance, Redis works with an in-memory data set. You can persist it either by dumping the data set to disk every once in a while, or by appending each command to a log.
Security Fix(es):
* redis: Redis: Remote Code Execution via specially crafted RESTORE payload (CVE-2026-66373)
* redis: Redis: Arbitrary code execution via TLS pending-data list use-after-free (CVE-2026-81934)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-66373
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same NACK (pending entry) is referenced by more than one consumer, because deleting both consumers via XGROUP DELCONSUMER leads to a double free. NOTE: this issue exists because of an incomplete fix for CVE-2026-25243.
CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
Update packages.
Redis before 8.8.0, in the unusual case where an authenticated attacker can execute RESTORE, allows remote code execution via a RESTORE payload where the same NACK (pending entry) is referenced by more than one consumer, because deleting both consumers via XGROUP DELCONSUMER leads to a double free. NOTE: this issue exists because of an incomplete fix for CVE-2026-25243.
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
N/A
SRPMS
- redis-6.2.24-1.el9_8.src.rpm
MD5: 4bcc174e73261b55304de11996b3b1a0
SHA-256: a2d771350860a43161ed121ae66a536920b88a9c86862b9a6e6b6a984ccb2c16
Size: 3.02 MB
Asianux Server 9 for x86_64
- redis-6.2.24-1.el9_8.x86_64.rpm
MD5: 1643696605de6f8af40e66e2a1112a87
SHA-256: 81163b1008584f99e4535c1bbf8f347942267ce8b7f2fc94f4bb67e004e87522
Size: 1.30 MB - redis-devel-6.2.24-1.el9_8.i686.rpm
MD5: 5c60b4b29eb8e2f0b995610285136a31
SHA-256: b26bee305436871029f09b1f90eff999f7e55ff53440175d1ed3ed0921b88e88
Size: 19.45 kB - redis-devel-6.2.24-1.el9_8.x86_64.rpm
MD5: c99a1a0b310ba5902f51c368882eb2c4
SHA-256: f1eef45697769bb11c85511aef735893cca6568755a81d5901800a063620d94a
Size: 19.42 kB - redis-doc-6.2.24-1.el9_8.noarch.rpm
MD5: 8138715c773a066b43a07ccc64594649
SHA-256: 4780973a4ae1b1558df7f88ba8e10775dde53b6778e01ad904608f51ba9ab5f5
Size: 549.94 kB