Track vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.4
CVE-2026-81934: Redis with TLS may let remote attacker run commands
CVE-2026-81934 · published 18 days ago
Summary
If Redis is set up to use TLS, a coding error could let a stranger send specially crafted traffic and cause the server to run any command it wants. This could happen without any authentication and gives the attacker full control over the Redis service. Apply the latest Redis updates or disable TLS until the patch is installed.
What to do
- Update bellsoft redis to version 7.2.16-r0.
- Update redis redis to version 8.8.2 or later.
- Update redis redis software (enterprise) to version 8.2.0-46 or later.
Affected software
| Ecosystem | Vendor | Product | Affected versions |
|---|---|---|---|
| Ubuntu:Pro:14.04:LTS | canonical | redis | All versions |
| – | redis | redis |
8.8.0 < 8.8.2 |
| Debian:11 | debian | redis | All versions |
| Debian:12 | debian | redis | All versions |
| Debian:13 | debian | redis | All versions |
| Debian:14 | debian | redis | All versions |
| – | redis | redis software (enterprise) | < 8.2.0-46 |
| Alpaquita:23 | bellsoft | redis |
>= 7.0.9-r0, < 7.2.16-r0 Fix: upgrade to 7.2.16-r0
|
Original advisory text
BELL-CVE-2026-81934
Redis contains a use-after-free vulnerability in the 'tlsProcessPendingData()' function, which handles the TLS pending-data list if Redis is configured with TLS support. A remote, unauthenticated attacker may be able to execute arbitrary commands with the privileges of the Redis server.
References
- https://security-tracker.debian.org/tracker/CVE-2026-81934 Vendor Advisory
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2025/... Vendor Advisory
- https://raw.githubusercontent.com/redis/redis/7.2/00-RELEASENOTES Vendor Advisory
- https://raw.githubusercontent.com/redis/redis/7.4/00-RELEASENOTES Vendor Advisory
- https://redis.io/docs/latest/operate/rs/release-notes/rs-7-22-releases/rs-7-22-2... Vendor Advisory
- https://redis.io/docs/latest/operate/rs/release-notes/rs-7-8-releases/rs-7-8-6-3... Vendor Advisory
- https://redis.io/docs/latest/operate/rs/release-notes/rs-8-0-releases/rs-8-0-20-... Vendor Advisory
- https://redis.io/docs/latest/operate/rs/release-notes/rs-8-2-releases/rs-8-2-0-4... Vendor Advisory
- https://github.com/redis/redis/releases/tag/6.2.24 Vendor Advisory
- https://github.com/redis/redis/commit/6d088c335d5c3ec49a6c28486140b498e70b7834 Third Party Advisory
- https://github.com/v12-security/pocs/tree/main/redis/server_ssl Third Party Advisory
- https://raw.githubusercontent.com/redis/redis/8.10/00-RELEASENOTES Third Party Advisory
- https://raw.githubusercontent.com/redis/redis/8.2/00-RELEASENOTES Third Party Advisory
- https://raw.githubusercontent.com/redis/redis/8.4/00-RELEASENOTES Third Party Advisory
- https://raw.githubusercontent.com/redis/redis/8.6/00-RELEASENOTES Third Party Advisory
- https://raw.githubusercontent.com/redis/redis/8.8/00-RELEASENOTES Third Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2026-81934 Vendor Advisory
- https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/81xxx/CVE-2026-81934... Vendor Advisory
- https://ubuntu.com/security/CVE-2026-81934 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2026-81934 Third Party Advisory
- https://github.com/redis/redis/releases/tag/7.2.16 Vendor Advisory
- https://github.com/redis/redis/releases/tag/7.4.11 Vendor Advisory
- https://github.com/redis/redis/releases/tag/8.10.1 Vendor Advisory
- https://github.com/redis/redis/releases/tag/8.2.9 Vendor Advisory
- https://github.com/redis/redis/releases/tag/8.4.6 Vendor Advisory
- https://github.com/redis/redis/releases/tag/8.6.6 Vendor Advisory
- https://github.com/redis/redis/releases/tag/8.8.2 Vendor Advisory
- https://raw.githubusercontent.com/redis/redis/6.2/00-RELEASENOTES Vendor Advisory
- https://docs.bell-sw.com/security/cves/CVE-2026-81934 Vendor Advisory
Severity
8.4
High
CVSS 3.1: 9.8 (MITRE)
CVSS 4.0: 9.9 (OSV)
Exploitation
EPSS <1%
Type
CWE-416Use After Free
Timeline
Published3 Sep 2026
Updated21 Sep 2026
First seen27 Aug 2026
Sources
CVE-2026-81934 · NVD
CVE-2026-81934 · MITRE
DEBIAN-CVE-2026-81934 · OSV
CVE-2026-81934 · OSV
UBUNTU-CVE-2026-81934 · OSV
BELL-CVE-2026-81934 · OSV
Track software like this
Free during beta