← back
CVE-2018-11218

CVE-2018-11218

30Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 59%
from disclosure to weapon149 days
Published on NVDJun 17
metasploit+149d
exploitation probability
59%top 1% of all CVEs
observed exploitation
nono source reports it
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
Affected products
n/a · n/a