{"id":"CVE-2026-92925","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-92925","summary":"In Redis community the cluster bus PING/PONG/MEET packet parser validated extension padding\nand total length but never checked that string-carrying extensions are\nproperly null-terminated,…","details":"In Redis community the cluster bus PING/PONG/MEET packet parser validated extension padding\nand total length but never checked that string-carrying extensions are\nproperly null-terminated, allowing a crafted packet to trigger\nout-of-bounds reads when the payload is later consumed as a C string. This vulnerability can potentially lead to loss of confidentiality or remote denial of service. Redis Software / Redis Enterprise are not affected by this issue.","published":"2026-09-17T12:18:31.063","modified":"2026-09-17T12:18:31.063","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":{"url":"https://github.com/redis/redis/commit/37894faeea11e2db28b9fc2af378a762d2c36523","label":"redis/redis@37894fa"},"references":[{"type":"WEB","url":"https://github.com/redis/redis/commit/37894faeea11e2db28b9fc2af378a762d2c36523"},{"type":"WEB","url":"https://github.com/redis/redis/pull/15263"},{"type":"WEB","url":"https://github.com/redis/redis/releases/tag/8.10.0"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-09-17T12:18:31.063"}}