SUSE-SU-2026:1950-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-20261950-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:1950-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2026:1950-1
Upstream
CVE (3)
Related
Published
2026-05-18T07:51:41Z
Modified
2026-05-19T08:45:10Z
Summary
Security update for valkey
Details

This update for valkey fixes the following issues

  • CVE-2026-23479: use-after-free in unblock client flow may lead to remote code execution (bsc#1264164).
  • CVE-2026-23631: Lua use-after-free via the master-replica synchronization mechanism may lead to remote code execution (bsc#1264165).
  • CVE-2026-25243: invalid memory access in RESTORE command via a specially crafted serialized payload may lead to remote code execution (bsc#1264166).

Changes for valkey:

  • Update to 8.0.9:
References

Affected packages