[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

251782

 
 

909

 
 

196543

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4577-1 haproxy -- haproxy

ID: oval:org.secpod.oval:def:604626Date: (C)2019-12-03   (M)2023-11-13
Class: PATCHFamily: unix




Tim D#xFC;sterhus discovered that haproxy, a TCP/HTTP reverse proxy, did not properly sanitize HTTP headers when converting from HTTP/2 to HTTP/1. This would allow a remote user to perform CRLF injections.

Platform:
Debian 10.x
Product:
haproxy
vim-haproxy
Reference:
DSA-4577-1
CVE-2019-19330
CVE    1
CVE-2019-19330
CPE    2
cpe:/o:debian:debian_linux:10.x
cpe:/a:haproxy:haproxy

© SecPod Technologies