CVE-2022-3647 | Redis up to 6.2.7/7.0.5 Crash Report debug.c sigsegvHandler denial of service (EUVD-2022-43006 / Nessus ID 239773)
A vulnerability, which was classified as problematic, has been found in Redis up to 6.2.7/7.0.5. This affects the function sigsegvHandler of the file debug.c of the component Crash Report. The manipulation leads to denial of service.
This vulnerability is documented as CVE-2022-3647. The attack requires being on the local network. There is not any exploit available.
The actual existence of this vulnerability is currently in question.
It is suggested to install a patch to address this issue.
The vendor claims that this is not a DoS because it applies to the crash logging mechanism which is triggered after a crash has occurred.