RedisGraph 2.x through 2.2.11 has a NULL Pointer Dereference that leads to a server crash because it mishandles an unquoted string, such as an alias that has not yet been introduced.
References
Link | Resource |
---|---|
https://github.com/RedisGraph/RedisGraph/issues/1502 | Exploit Third Party Advisory |
https://github.com/RedisGraph/RedisGraph/pull/1503 | Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-23T22:32:13
Updated: 2020-12-23T22:32:13
Reserved: 2020-12-23T00:00:00
Link: CVE-2020-35668
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-12-23T23:15:12.270
Modified: 2020-12-28T18:11:34.800
Link: CVE-2020-35668
JSON object: View
Redhat Information
No data.
CWE