A AegiFlow
HIGHCVSS 8.1

CVE-2023-41056

CVE-2023-41056 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

Redis is an in-memory database that persists on disk. Redis incorrectly handles resizing of memory buffers which can result in integer overflow that leads to heap overflow and potential remote code execution. This issue has been patched in version 7.0.15 and 7.2.4.

Affected packages

EcosystemPackageAffected versionsFixed versions
Redisredis[object Object], [object Object]

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.