An out of bounds write vulnerability was found in the handling of the client-output-buffer-limit option during the CONFIG SET command for the Redis data structure store. A crafted CONFIG SET command can lead to an out of bounds write potentially resulting in code execution. Upstream patch: https://github.com/antirez/redis/commit/6d9f8e2462fc2c426d48c941edeb78e5df7d2977 External References: http://www.talosintelligence.com/reports/TALOS-2016-0206/ http://blog.talosintel.com/2016/09/redis-vulnerability.html
Statement: No currently supported version of Red Hat OpenStack Platform or Red Hat Enterprise Linux OpenStack Platform is affected by this flaw.