Buffer Overflow vulnerability in Redis RedisGraph v.2.x through v.2.12.8 and fixed in v.2.12.9 allows an attacker to execute arbitrary code via the code logic after valid authentication.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/47xxx/CVE-2023-47004.json",
"cna_assigner": "mitre"
}[
{
"digest": {
"function_hash": "131347100829225143602134050935760397726",
"length": 331.0
},
"id": "CVE-2023-47004-16c816a3",
"signature_version": "v1",
"target": {
"file": "src/execution_plan/ops/op.c",
"function": "OpBase_PropagateReset"
},
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b"
},
{
"digest": {
"line_hashes": [
"174243879673421889489411412717855910628",
"50347943674815831598971986052321526468",
"214122889479866941231410254755282949956",
"292140202894790645004500454712669526176"
],
"threshold": 0.9
},
"id": "CVE-2023-47004-4f08da1b",
"signature_version": "v1",
"target": {
"file": "src/execution_plan/ops/op.c"
},
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/redisgraph/redisgraph/commit/b6894afedcc0b3380dd8651a6ed47e56bb48da9b"
}
]
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-47004.json"
"2026-05-30T23:50:11Z"