CVE-2017-15047: redis: Insufficient input validation in the clusterLoadConfig function

Severity: Critical

CVSS Score: 9.8

The clusterLoadConfig function in cluster.c in Redis 4.0.2 allows attackers to cause a denial of service (out-of-bounds array index and application crash) or possibly have unspecified other impact by leveraging "limited access to the machine."