-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 13 May 2026 12:00:00 +0800 Source: redis Binary: redis-sentinel redis-server redis-tools redis-tools-dbgsym Architecture: armel Version: 5:7.0.15-1~deb12u7 Distribution: bookworm-security Urgency: high Maintainer: armel Build Daemon (arm-ubc-04) Changed-By: Aron Xu Description: redis-sentinel - Persistent key-value database with network interface (monitoring) redis-server - Persistent key-value database with network interface redis-tools - Persistent key-value database with network interface (client) Changes: redis (5:7.0.15-1~deb12u7) bookworm-security; urgency=high . * CVE-2025-67733: RESP protocol injection via Lua error_reply. A user could manipulate data read by a connection by injecting CR/LF sequences into a Redis error reply. 6910256443c7 ("Strip CRLF from error and simple string replies"). * CVE-2026-21863: Remote DoS with malformed Cluster bus message. A peer could send a crafted PING/PONG/MEET packet whose gossip count or ping-extension header exceeds the received packet length, causing out-of-bounds reads and a server crash. Checksums-Sha1: c08a00a1b40a29860b3af3f6ad8c342a2ca22afc 34572 redis-sentinel_7.0.15-1~deb12u7_armel.deb abda92dbf492321af26aec7078431dc8c3550a4f 73392 redis-server_7.0.15-1~deb12u7_armel.deb 6cb4b7534d23bf0916a189f94039e501d2fe5414 2589292 redis-tools-dbgsym_7.0.15-1~deb12u7_armel.deb f90f35d2d61f4fc46bfe461c4e1b76d30ef0a74c 834816 redis-tools_7.0.15-1~deb12u7_armel.deb c124eca9831f7e2d4f0256fc9999fa9c8f1b2866 7612 redis_7.0.15-1~deb12u7_armel-buildd.buildinfo Checksums-Sha256: 715c01179fee8d1fb103acb5de7eb3d97714a7a405451898c6f834ed90af5b11 34572 redis-sentinel_7.0.15-1~deb12u7_armel.deb b89c6bb51805583129bc2828231bba584844ee518c2fdad4bdecbb32b020d53c 73392 redis-server_7.0.15-1~deb12u7_armel.deb d0548f9aea9e4e4836a2b995efd50e5d61a1cfdb1886dd59db3435dabab5138a 2589292 redis-tools-dbgsym_7.0.15-1~deb12u7_armel.deb b4224118e1c207ac66cc84e9aa90bcf3fa12c158ce8a5f431882f21bf05b3064 834816 redis-tools_7.0.15-1~deb12u7_armel.deb 7d83c4dc64039925a868d43193aa8fdd621afb36b5d33b0e02e90f968aa9a302 7612 redis_7.0.15-1~deb12u7_armel-buildd.buildinfo Files: cf9cd2d3398022ac14f833f74cfdca84 34572 database optional redis-sentinel_7.0.15-1~deb12u7_armel.deb 1cc81dadc9d7e5b426c5155d81b1a814 73392 database optional redis-server_7.0.15-1~deb12u7_armel.deb 4e5d4e74112ae19fee1bd2f53b900bb5 2589292 debug optional redis-tools-dbgsym_7.0.15-1~deb12u7_armel.deb 6bff923a2ab8190163b40a397ca13bdd 834816 database optional redis-tools_7.0.15-1~deb12u7_armel.deb d2fc4c7ce64eadc668de8ef1c5f953bb 7612 database optional redis_7.0.15-1~deb12u7_armel-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEECx5fXZYVNP9tMtwlK1PZBedPspoFAmoEzm4ACgkQK1PZBedP spp/dhAAm1CPhwKf1XNufzGnVsbhMotsrlO/9JQPR02a5ACMw3F9ruBx7GlFLBxU B2H3mI6oQBQ7gC3yhnlS04hMmTlkQWaeQKetpD6v4vh3zq1DOxekSRCZeIrki0AB as1zgoZHLNu2thP06Lu08nGBpzxogjHD+z0IueJI4Hvwp3ijXZjTWgsfOa40YcFF wL/j+Ij+9Y01r9L+CQCuQfCFbyogedcTBN8n6Tup56SyKk0soWSV8DzOVC9YCw/h FI/sx5ML78Wmxd/1cqegMCjpW1N0STwOe/1Kb1dExiUOz9Ub7X3NQhvNLqzDxaaO ed860z9RjiUA42ie8shRmui/rOec3n+fes58Xn4up0gnYFgE+ajbje6lmnybbRaf x7kwEAVzxqS6JpFK6QtowmldmtJGimvLWE78IV71Nej8D49ivM3+vyUDYlSFADwE m9iROd1ZQVZDcdt6paHaEQu2bSwGdM/Ih9lpxx8RjZsz1Ie4VSRW+nclOvA0K0C+ AQa+2cZNl9PkFjiRv07iZWSGZ652pYR/bIy3btvYyanx4O7B6LM6FAOa/H4Tbp/+ 9ondiFatqHWFQnNiEtY+lhrIz1moFzd4WbXiolzYUddDxVG71qPobxZYqVZHQ9lS WwAS5lC/gT6sheqXDPNx7CAD5ooqocxRhqKJnEilX5UpuaDK6Xk= =LmRl -----END PGP SIGNATURE-----