Oval Definition:oval:com.ubuntu.xenial:def:201683390000000
Revision Date:2016-10-28Version:1
Title:CVE-2016-8339 on Ubuntu 16.04 LTS (xenial) - medium.
Description:A buffer overflow in Redis 3.2.x prior to 3.2.4 causes arbitrary code execution when a crafted command is sent. An out of bounds write vulnerability exists in the handling of the client-output-buffer-limit option during the CONFIG SET command for the Redis data structure store. A crafted CONFIG SET command can lead to an out of bounds write potentially resulting in code execution.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-8339
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT redis-sentinel package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT redis-server package in xenial, while related to the CVE in some way, is not affected.
  • OR NOT redis-tools package in xenial, while related to the CVE in some way, is not affected.
  • BACK