Update urgency: SECURITY: There is a security fix in the release.
Security fixes
- (CVE-2025-62507) Bug in
XACKDELmay lead to stack overflow and potential RCE
Bug fixes
HGETEX: A missingnumfieldsargument whenFIELDSis used can lead to Redis crash- An overflow in
HyperLogLogwith 2GB+ entries may result in a Redis crash - Cuckoo filter - Division by zero in Cuckoo filter insertion
- Cuckoo filter - Counter overflow
- Bloom filter - Arbitrary memory read/write with invalid filter
- Bloom filter - Out-of-bounds access with empty chain
- Top-k - Out-of-bounds access
- Bloom filter - Restore invalid filter [We thank AWS security for responsibly disclosing the security bug]
Hashes
MSYS2 Builds Hashes
Algorithm : SHA256
Hash : A37AB94631796F625ED41867FF7873784AFC46EEDABA50C0D9160A8764F47EE6
Path : D:\a\redis-windows\redis-windows\Redis-8.2.3-Windows-x64-msys2.zip
Algorithm : SHA256
Hash : 88D4C6D687491E2ADA80C4A292BCF0282E462728ECDA1C3CC6EC47261DA06909
Path : D:\a\redis-windows\redis-windows\Redis-8.2.3-Windows-x64-msys2-with-Service.zip
Cygwin Builds Hashes
Algorithm : SHA256
Hash : 42979CC451EBF55E22A64810664A5DBA9821BF4FBAB2FA85423568B475226FAF
Path : D:\a\redis-windows\redis-windows\Redis-8.2.3-Windows-x64-cygwin.zip
Algorithm : SHA256
Hash : 5D6099AA9CF764FBBACF6D9D9D712163D519220FD7CFB10E6318A055E029662E
Path : D:\a\redis-windows\redis-windows\Redis-8.2.3-Windows-x64-cygwin-with-Service.zip
From workflow: https://github.com/tangw1257/redis-windows/actions/runs/19022368106