Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ffg4-hmhr-qr79

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.

EPSS

Процентиль: 27%
0.00094
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
около 10 лет назад

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.

redhat
около 10 лет назад

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.

nvd
около 10 лет назад

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.

debian
около 10 лет назад

The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1. ...

oracle-oval
почти 10 лет назад

ELSA-2015-1741: haproxy security update (IMPORTANT)

EPSS

Процентиль: 27%
0.00094
Низкий

Дефекты

CWE-119