Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2018-12326

37
FAUCET Score

CVE-2018-12326 is a buffer overflow vulnerability affecting redis-cli in Redis versions before 4.0.10 and 5.x before 5.0 RC3. This flaw allows an attacker to achieve code execution and privilege escalation through a specially crafted command line. The vulnerability has a high CVSS score of 8.4, indicating a severe impact with high confidentiality, integrity, and availability compromise, though it requires local access and no user interaction. While not actively exploited in the wild, a Proof-of-Concept exploit is publicly available on ExploitDB, but there is no evidence of widespread community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.0.10CPE matchmatch criteria
cpe:2.3:a:redislabs:redis:*:*:*:*:*:*:*:*
5.0CPE matchmatch criteria
cpe:2.3:a:redislabs:redis:5.0:rc1:*:*:*:*:*:*
5.0CPE matchmatch criteria
cpe:2.3:a:redislabs:redis:5.0:rc2:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

8.4HIGH

CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.5
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
2.68%
Probability of exploitation in next 30 days
EPSS Percentile
84.2%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
ExploitDB: EDB-44904 · Jun 18, 2018
This CVE's current EPSS score of 0.0268 is in the 94th percentile among its peer group of 3,236 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (15)

github_advisorypatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Platform 10.0 (Newton)Fixed in: redis-0:3.0.6-4.el7ost
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Platform 13.0 (Queens)Fixed in: redis-0:3.2.8-3.el7ost
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Software Collections for Red Hat Enterprise Linux 6Fixed in: rh-redis32-redis-0:3.2.13-1.el6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Software Collections for Red Hat Enterprise Linux 7Fixed in: rh-redis32-redis-0:3.2.13-1.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUSFixed in: rh-redis32-redis-0:3.2.13-1.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUSFixed in: rh-redis32-redis-0:3.2.13-1.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUSFixed in: rh-redis32-redis-0:3.2.13-1.el7
View patch
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenStack Platform 8 (Liberty)Fixed in: redis
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenStack Platform 9 (Mitaka)Fixed in: redis
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenStack Platform 9 (Mitaka) Operational ToolsFixed in: redis
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenStack Platform 12 (Pike)Fixed in: redis
redhatvendor investigatingvia redhat_api
Product: Red Hat OpenStack Platform 8 (Liberty) Operational ToolsFixed in: redis
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) Operational ToolsFixed in: redis
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)Fixed in: redis

Vendor Advisories (1)

redhatCVE-2018-12326Low

redis: Code execution in redis-cli via crafted command line arguments

Jun 13, 2018

References

access.redhat.com / errata/RHSA-2019:0052
access.redhat.com / errata/RHSA-2019:0094
access.redhat.com / errata/RHSA-2019:1860
gist.github.com / fakhrizulkifli/f831f40ec6cde4f744c552503d8698f0
Third Party Advisory
github.com / antirez/redis/commit/9fdcc15962f9ff4baebe6fdd947816f43f730d50
PatchThird Party Advisory
raw.githubusercontent.com / antirez/redis/4.0/00-RELEASENOTES
PatchThird Party Advisory
raw.githubusercontent.com / antirez/redis/5.0/00-RELEASENOTES
PatchThird Party Advisory
exploit-db.com / exploits/44904
ExploitThird Party AdvisoryVDB Entry