Red Hat Bugzilla – Bug 1590067
CVE-2018-11218 redis: Heap corruption in lua_cmsgpack.c
Last modified: 2018-09-23 22:56:53 EDT
Redis is vulnerable to heap corruption in lua_cmsgpack.c. An attacker could exploit this to cause a denial of service or have other potential unspecified impact.
External References: http://antirez.com/news/119
Created redis tracking bugs for this issue: Affects: epel-all [bug 1591537] Affects: fedora-all [bug 1591536]
Acknowledgments: (none)
Patches: https://github.com/antirez/redis/commit/52a00201fca331217c3b4b8b634f6a0f57d6b7d3 https://github.com/antirez/redis/commit/5ccb6f7a791bf3490357b00a898885759d98bab0