Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2012-2942

Опубликовано: 27 мая 2012
Источник: debian
EPSS Низкий

Описание

Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
haproxyfixed1.4.23-1package

Примечания

  • According to upstream information this only was fixed in 1.4.21

  • only a issue if using non-default value for global.tune.bufsize configuration option

  • Reported as duplicate with CVE-2012-2391 http://seclists.org/oss-sec/2012/q2/417

EPSS

Процентиль: 92%
0.05413
Низкий

Связанные уязвимости

ubuntu
около 14 лет назад

Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.

nvd
около 14 лет назад

Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.

github
больше 4 лет назад

Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.

EPSS

Процентиль: 92%
0.05413
Низкий