Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Ubuntu 24.04 LTS Redis Major Service Disruption Vulnerability USN-8121-2

Ubuntu Large Esm H500
Redis could be made to crash or run programs if it received specially crafted network traffic.
==========================================================================
Ubuntu Security Notice USN-8120-1
March 24, 2026

redis vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 24.04 LTS

Summary:

Redis could be made to crash or run programs if it received specially
crafted network traffic.

Software Description:
- redis: Persistent key-value database with network interface

Details:

Seunghyun Lee discovered that Redis incorrectly handled memory during
hyperloglog operations. An attacker could use this issue to cause a denial
of service, or possibly achieve remote code execution.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 24.04 LTS
  redis                           5:7.0.15-1ubuntu0.24.04.3
  redis-server                    5:7.0.15-1ubuntu0.24.04.3

After a standard system update you need to restart redis to make all the
necessary changes.

References:
  https://ubuntu.com/security/notices/USN-8120-1
  CVE-2025-32023

Package Information:
  https://launchpad.net/ubuntu/+source/redis/5:7.0.15-1ubuntu0.24.04.3

Ubuntu 24.04 LTS Redis Major Service Disruption Vulnerability USN-8121-2

ubuntu
Calendar Grey March 24, 2026
Dist Ubuntu Esm H88
Redis in Ubuntu 24.04 LTS faces critical flaw leading to potential crashes and remote code execution. Update recommended.
Redis could be made to crash or run programs if it received specially crafted network traffic.

Summary

A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.04 LTS Summary: Redis could be made to crash or run programs if it received specially crafted network traffic. Software Description: - redis: Persistent key-value database with network interface Details: Seunghyun Lee discovered that Redis incorrectly handled memory during hyperloglog operations. An attacker could use this issue to cause a denial of service, or possibly achieve remote code execution.

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 24.04 LTS redis 5:7.0.15-1ubuntu0.24.04.3 redis-server 5:7.0.15-1ubuntu0.24.04.3 After a standard system update you need to restart redis to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-8120-1

CVE-2025-32023

Severity
critical
Lowest
Low
Medium
High
Critical

Ubuntu Security Notice USN-8120-1

Package Information

https://launchpad.net/ubuntu/+source/redis/5:7.0.15-1ubuntu0.24.04.3

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here