All Products
Search
Document Center

Tair (Redis® OSS-Compatible):Notice on CVE-2023-36824 in Redis 7.0

Last Updated:Dec 11, 2023

Recently, a vulnerability known as CVE-2023-36824 has been discovered in Redis 7.0. We recommend that you update your ApsaraDB for Redis instances that run Redis 7.0 to the latest minor version.

Vulnerability details

ApsaraDB for Redis has addressed the CVE-2023-36824 vulnerability in Redis 7.0 with necessary fixes.

Scope of impact

ApsaraDB for Redis instances that run Redis 7.0

Suggestions

To ensure the secure and stable operation of your ApsaraDB for Redis instances that run Redis 7.0, we recommend that you update the instances to the latest minor version (7.0.1.2 or later) at the earliest opportunity. For more information, see Update the minor version.