VYPR
Unrated severityNVD Advisory· Published Jul 22, 2024· Updated Aug 1, 2024

NI SystemLink Server Ships Out of Date Redis Version

CVE-2024-6121

Description

An out-of-date version of Redis shipped with NI SystemLink Server is susceptible to multiple vulnerabilities, including CVE-2022-24834. This affects NI SystemLink Server 2024 Q1 and prior versions. It also affects NI FlexLogger 2023 Q2 and prior versions which installed this shared service.

Affected products

4
  • Ni/SystemLink Serverllm-create2 versions
    <= 2024 Q1+ 1 more
    • (no CPE)range: <= 2024 Q1
    • (no CPE)range: 0
  • Ni/FlexLoggerllm-fuzzy2 versions
    <= 2023 Q2+ 1 more
    • (no CPE)range: <= 2023 Q2
    • (no CPE)range: 0

Patches

0

No patches discovered yet.

Vulnerability mechanics

No source-code context for this CVE — mechanics is only generated when we can read the actual fix diff. Without that, the four sections (root cause, attack vector, affected code, fix) would be speculation rather than analysis.

References

1

News mentions

0

No linked articles in our index yet.