As Redis has an embedded version of hiredis, please update to the latest 0.14.1 with the included fix for CVE-2020-7105.

Comment From: stevelipinski

A bit hard to tell - maybe the included hiredis is actually an unreleased 1.x version, but I believe the issue still stands - the hiredis included in redis is vulnerable to CVE-2020-7105

Comment From: oranagra

The hiredis version was updated in redis 6.2. p.s. i wonder how an NPD crash is different than a SIGABRT in that respect. from security perspective it seems the same to me (SIGSEGV could be alarming, but in this case not exploitable).