{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-19T23:16:42.377","vulnerabilities":[{"cve":{"id":"CVE-2025-27151","sourceIdentifier":"security-advisories@github.com","published":"2025-05-29T09:15:25.980","lastModified":"2025-12-23T15:03:51.993","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Redis is an open source, in-memory database that persists on disk. In versions starting from 7.0.0 to before 8.0.2, a stack-based buffer overflow exists in redis-check-aof due to the use of memcpy with strlen(filepath) when copying a user-supplied file path into a fixed-size stack buffer. This allows an attacker to overflow the stack and potentially achieve code execution. This issue has been patched in version 8.0.2."},{"lang":"es","value":"Redis es una base de datos en memoria de código abierto que persiste en el disco. En versiones anteriores a la 7.0.0 y anteriores a la 8.0.2, se produce un desbordamiento de búfer en redis-check-aof debido al uso de memcpy con strlen(filepath) al copiar una ruta de archivo proporcionada por el usuario en un búfer de pila de tamaño fijo. Esto permite que un atacante desborde la pila y potencialmente ejecute código. Este problema se ha corregido en la versión 8.0.2."}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H","baseScore":4.7,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":1.0,"impactScore":3.6},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-20"},{"lang":"en","value":"CWE-121"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:redis:redis:*:*:*:*:*:*:*:*","versionStartIncluding":"7.0.0","versionEndExcluding":"7.2.9","matchCriteriaId":"DFAF6EF3-1A4C-4583-8A1F-35973BDEF10F"},{"vulnerable":true,"criteria":"cpe:2.3:a:redis:redis:*:*:*:*:*:*:*:*","versionStartIncluding":"7.4.0","versionEndExcluding":"7.4.4","matchCriteriaId":"CC659336-9BBF-49EE-AED1-D8F6283763D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:redis:redis:*:*:*:*:*:*:*:*","versionStartIncluding":"8.0.0","versionEndExcluding":"8.0.2","matchCriteriaId":"FEF276A9-987A-49C6-AF77-C9D984A05DB6"}]}]}],"references":[{"url":"https://github.com/redis/redis/commit/643b5db235cb82508e72f11c7b4bbfc7dc39be56","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/redis/redis/releases/tag/8.0.2","source":"security-advisories@github.com","tags":["Release Notes"]},{"url":"https://github.com/redis/redis/security/advisories/GHSA-5453-q98w-cmvm","source":"security-advisories@github.com","tags":["Third Party Advisory"]}]}}]}