VDB
ALPINE-CVE-2018-11219
ALPINE-CVE-2018-11219
PUBLISHED
CVSS 9.800000190734863 CRITICAL
An Integer Overflow issue was discovered in the struct library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2, leading to a failure of bounds checking.
Risk Scores
CVSS v3.0
9.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Alpine:v3.5 | redis | 2.8.14-r0, 3.2.5-r0, 3.2.4-r0 |
| Alpine:v3.7 | redis | 4.0.6-r0, 3.0.0-r0, 2.6.17-r0 |
| Alpine:v3.6 | redis | 2.8.10-r0, 2.8.11-r0, 2.8.12-r0 |
Timeline
- Jun 17, 2018 CVE Published
- Nov 19, 2025 CVE Updated
- Apr 30, 2026 Distribution Patch