CVE-2017-15047: Redislabs Redis
Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.
The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to cause a denial of service (out-of-bounds array index and application crash) or possibly have unspecified other impact by leveraging "limited access to the machine."
Affected products
- Redislabs Redis: version 4.0.2 only
Published 2017-10-06. Last modified 2026-06-17.