openbsd-ports/databases/redis
danj 65888ed61c Update to redis-6.2.7
This fixes:
(CVE-2022-24736) An attacker attempting to load a specially crafted
Lua script can cause NULL pointer dereference which will result with
a crash of the redis-server process. This issue affects all versions
of Redis.

(CVE-2022-24735) By exploiting weaknesses in the Lua script
execution environment, an attacker with access to Redis can inject
Lua code that will execute with the (potentially higher) privileges
of another Redis user.

ok tb
2022-04-28 03:02:36 +00:00
..
patches Update to redis-6.2.7 2022-04-28 03:02:36 +00:00
pkg
distinfo Update to redis-6.2.7 2022-04-28 03:02:36 +00:00
Makefile Update to redis-6.2.7 2022-04-28 03:02:36 +00:00