Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 9: 2025-0033 Moderate Vulnerabilities in Redis RCE and DoS

mageia
Calendar Grey February 3, 2025
Dist Mageia Esm H88
Recent updates to Redis packages fix vulnerabilities related to Remote Code Execution (RCE) and Denial of Service (DoS) in Mageia. Review docs for defense strategies
Redis' Lua library commands may lead to remote code execution

Summary

Redis' Lua library commands may lead to remote code execution. (CVE-2024-46981) Redis allows denial-of-service due to malformed ACL selectors. (CVE-2024-51741)

References

- https://bugs.mageia.org/show_bug.cgi?id=33924

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4HQU52SRIF5TB4GL3LJOHKX2MUHXNHH6/

-

- https://www.cve.org/CVERecord?id=CVE-2024-46981

- https://www.cve.org/CVERecord?id=CVE-2024-51741

Resolution

SRPMS

- 9/core/redis-7.0.14-1.2.mga9

Publication date: 03 Feb 2025
URL: https://advisories.mageia.org/MGASA-2025-0033.html
Type: security
CVE: CVE-2024-46981, CVE-2024-51741

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here