Path to this page:
Subject: CVS commit: pkgsrc/databases/redis
From: Adam Ciarcinski
Date: 2023-04-19 07:01:08
Message id: 20230419050108.74AC5FA85@cvs.NetBSD.org
Log Message:
redis: updated to 7.0.11
Redis 7.0.11 Released Mon Apr 17 16:00:00 IST 2023
================================================================================
Upgrade urgency: SECURITY, contains fixes to security issues.
Security Fixes:
* (CVE-2023-28856) Authenticated users can use the HINCRBYFLOAT command to create
an invalid hash field that will crash Redis on access
Bug Fixes
=========
* Add a missing fsync of AOF file in rare cases
* Disconnect pub-sub subscribers when revoking allchannels permission
Platform / toolchain support related improvements
=================================================
* Fix a compiler fortification induced crash when used with link time optimizations
Files: