This bug was fixed in the package valkey - 7.2.10+dfsg1-0ubuntu0.1
---------------
valkey (7.2.10+dfsg1-0ubuntu0.1) noble; urgency=medium
* New upstream version 7.2.10 (LP: #2115258)
- Security fixes:
+ CVE-2025-21605: Allocation of Resources Without Limits or Throttling.
+ CVE-2025-32023: Out-of-bounds write during hyperloglog operations.
+ CVE-2025-48367: IP Protocol errors resulting in DoS.
+ CVE-2025-27151: AOF file name length not checked.
- Bug fixes:
+ Only mark the client reprocessing flag when unblocked on keys.
+ Free module context even if there was no content written in auxsave2.
+ Fix Detect SSL_new() returning NULL in outgoing connections.
+ Correctly cast the extension lengths.
+ Fix cluster myself CLUSTER SLOTS/NODES wrong port after updating
port/tls-port.
+ Fix replica can't finish failover when config epoch is outdated.
+ Fix CLIENT UNBLOCK ability to unpause paused clients.
+ Fix defrag crash when using FLUSHDB ASYNC in cluster mode.
+ Fix memory leak in forgotten node ping ext code path.
+ Fix module LatencyAddSample still work when latency-monitor-threshold
is 0.
+ Fix raxRemove crash at memcpy() due to key size exceeds max Rax size.
+ Fix error "SSL routines::bad length" when connTLSWrite is called second
time with smaller buffer.
+ Fix RANDOMKEY infinite loop during CLIENT PAUSE.
+ Fix adding samples to stream object consumer trees.
+ Fix panic in primary when blocking shutdown after previous block with
timeout.
+ Fix incorrect lag reported in XINFO GROUPS.
-- Lena Voytek <[email protected]> Tue, 24 Jun 2025 15:08:25
-0400
** Changed in: valkey (Ubuntu Noble)
Status: Fix Committed => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2115258
Title:
Update Valkey to 7.2.10 in noble, 8.0.4 in plucky, and 8.1.3 in
questing
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/valkey/+bug/2115258/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs