SUSE-SU-2026:2099-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-20262099-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:2099-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2026:2099-1
Upstream
CVE (3)
Related
Published
2026-05-27T14:21:52Z
Modified
2026-05-28T08:15:05Z
Summary
Security update for redis
Details

This update for redis fixes the following issues

  • CVE-2026-23479: use-after-free in unblock client flow may lead to remote code execution (bsc#1264164).
  • CVE-2026-23631: Lua use-after-free via the master-replica synchronization mechanism may lead to remote code execution (bsc#1264165).
  • CVE-2026-25243: invalid memory access in RESTORE command via a specially crafted serialized payload may lead to remote code execution (bsc#1264166).
References

Affected packages