CVE-2025-27151

Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been patched in version 8.0.2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:redis:redis:*:*:*:*:*:*:*:*

History

21 Aug 2025, 22:28

Type Values Removed Values Added
CPE cpe:2.3:a:redis:redis:*:*:*:*:*:*:*:*
First Time Redis
Redis redis
References () https://github.com/redis/redis/commit/643b5db235cb82508e72f11c7b4bbfc7dc39be56 - () https://github.com/redis/redis/commit/643b5db235cb82508e72f11c7b4bbfc7dc39be56 - Patch
References () https://github.com/redis/redis/releases/tag/8.0.2 - () https://github.com/redis/redis/releases/tag/8.0.2 - Release Notes
References () https://github.com/redis/redis/security/advisories/GHSA-5453-q98w-cmvm - () https://github.com/redis/redis/security/advisories/GHSA-5453-q98w-cmvm - Third Party Advisory
Summary
  • (es) Redis es una base de datos en memoria de código abierto que persiste en el disco. En versiones anteriores a la 7.0.0 y anteriores a la 8.0.2, se produce un desbordamiento de búfer en redis-check-aof debido al uso de memcpy con strlen(filepath) al copiar una ruta de archivo proporcionada por el usuario en un búfer de pila de tamaño fijo. Esto permite que un atacante desborde la pila y potencialmente ejecute código. Este problema se ha corregido en la versión 8.0.2.

29 May 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-29 09:15

Updated : 2025-08-21 22:28


NVD link : CVE-2025-27151

Mitre link : CVE-2025-27151

CVE.ORG link : CVE-2025-27151


JSON object : View

Products Affected

redis

  • redis
CWE
CWE-20

Improper Input Validation

CWE-121

Stack-based Buffer Overflow