CyberRota Analysis
AI-GeneratedA double free vulnerability exists in the Module Timer Subsystem of valkey-io valkey version 9.1.0, which can be exploited remotely. While the severity is rated low, the potential for exploitation following public disclosure necessitates that users of this software prioritize applying the recommended patch to mitigate any risk. Organizations utilizing this version should ensure timely updates to maintain security.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A vulnerability was determined in valkey-io valkey 9.1.0. Impacted is the function moduleTimerHandler of the file src/module.c of the component Module Timer Subsystem. This manipulation causes double free. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Patch name: b349fe2821e3998534b1454c1b64a478daf8c6b7. To fix this issue, it is recommended to deploy a patch.