// For flags

CVE-2024-25116

Specially crafted CF.RESERVE command can lead to denial-of-service

Severity Score

5.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track
*SSVC
Descriptions

RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 and 2.6.10, authenticated users can use the `CF.RESERVE` command to trigger a runtime assertion and termination of the Redis server process. The problem is fixed in RedisBloom 2.4.7 and 2.6.10.

RedisBloom agrega un conjunto de estructuras de datos probabilísticos a Redis. A partir de la versión 2.0.0 y anteriores a la versión 2.4.7 y 2.6.10, los usuarios autenticados pueden usar el comando `CF.RESERVE` para activar una aserción en tiempo de ejecución y la finalización del proceso del servidor Redis. El problema se solucionó en RedisBloom 2.4.7 y 2.6.10.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:Track
Exploitation
None
Automatable
No
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2024-02-05 CVE Reserved
  • 2024-04-09 CVE Published
  • 2024-04-10 EPSS Updated
  • 2024-08-01 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
RedisBloom
Search vendor "RedisBloom"
RedisBloom
Search vendor "RedisBloom" for product "RedisBloom"
>= 2.0.0 < 2.4.7
Search vendor "RedisBloom" for product "RedisBloom" and version " >= 2.0.0 < 2.4.7"
en
Affected
RedisBloom
Search vendor "RedisBloom"
RedisBloom
Search vendor "RedisBloom" for product "RedisBloom"
>= 2.5.0 < 2.6.10
Search vendor "RedisBloom" for product "RedisBloom" and version " >= 2.5.0 < 2.6.10"
en
Affected