QID 198692

Date Published: 2022-03-09

QID 198692: Ubuntu Security Notification for Redis Vulnerability (USN-5316-1)

Due to a packaging issue, a remote attackerwith the ability to execute arbitrary lua scripts could possibly escape thelua sandbox and execute arbitrary code on the host.

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 10 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5316-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198692

    Software Advisories
    Advisory ID Software Component Link
    USN-5316-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5316-1