cbcvebase.
CVE-2025-21605
published 2025-04-23

CVE-2025-21605: Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can cause…

PriorityP345high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.85%
54.5th percentile
Redis is an open source, in-memory database that persists on disk. In versions starting at 2.6 and prior to 7.4.3, An unauthenticated client can cause unlimited growth of output buffers, until the server runs out of memory or is killed. By default, the Redis configuration does not limit the output buffer of normal clients (see client-output-buffer-limit). Therefore, the output buffer can grow unlimitedly over time. As a result, the service is exhausted and the memory is unavailable. When password authentication is enabled on the Redis server, but no password is provided, the client can still cause the output buffer to grow from "NOAUTH" responses until the system will run out of memory. This issue has been patched in version 7.4.3. An additional workaround to mitigate this problem without patching the redis-server executable is to block access to prevent unauthenticated users from connecting to Redis. This can be done in different ways. Either using network access control tools like firewalls, iptables, security groups, etc, or enabling TLS and requiring users to authenticate using client side certificates.

Affected

21 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianredict< redict 7.3.5+ds-1 (forky)redict 7.3.5+ds-1 (forky)
debianredis< redict 7.3.5+ds-1 (forky)redict 7.3.5+ds-1 (forky)
debianvalkey< redict 7.3.5+ds-1 (forky)redict 7.3.5+ds-1 (forky)
lfprojectsvalkey>= 0 < 8.1.1+dfsg1-18.1.1+dfsg1-1
lfprojectsvalkey>= 0 < 8.1.1+dfsg1-18.1.1+dfsg1-1
lfprojectsvalkey>= 7.2.4 < 7.2.97.2.9
lfprojectsvalkey>= 8.0.0 < 8.0.38.0.3
lfprojectsvalkey>= 8.1.0 < 8.1.18.1.1
msrcazl3_valkey_8.0.2-1_on_azure_linux_3.0
msrcazl3_valkey_8.0.3-1_on_azure_linux_3.0
msrccbl2_redis_6.2.18-3_on_cbl_mariner_2.0
msrccbl2_redis_6.2.20-1_on_cbl_mariner_2.0
redisredis
redisredis>= 0 < 5:6.0.16-1+deb11u65:6.0.16-1+deb11u6
redisredis>= 0 < 5:7.0.15-1~deb12u45:7.0.15-1~deb12u4
redisredis>= 0 < 5:7.0.15-3.15:7.0.15-3.1
redisredis>= 0 < 5:7.0.15-3.15:7.0.15-3.1
redisredis>= 2.6.0 < 6.2.186.2.18
redisredis>= 7.0 < 7.2.87.2.8
redisredis>= 7.4.0 < 7.4.37.4.3

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_debian7.5HIGH
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.