Updated redis packages fix a security vulnerability
Publication date: 31 Aug 2026Modification date: 31 Aug 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-62356
Description
The updated package fixes security vulnerabilities, including:
Miscalculated buffer size in CMSketch RDB loading may lead to heap OOB
write. (CVE-2026-62356)
References
- https://bugs.mageia.org/show_bug.cgi?id=36195
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/LJCOCIGFJRTGSL7B6LBQA4CBTCFCTL75/
- https://www.heise.de/en/news/Redis-Security-updates-against-code-injection-vulnerabilities-11417601.html
- https://github.com/redis/redis/releases/tag/8.6.6
- https://github.com/redis/redis/releases/tag/7.2.16
- https://www.cve.org/CVERecord?id=CVE-2026-62356
SRPMS
10/core
- redis-8.6.6-1.mga10
9/core
- redis-7.2.16-1.mga9