Описание
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line feed (LF, ASCII 0xa), and the zero character (NUL, ASCII 0x0), aka Intermediary Encapsulation Attacks.
Отчет
Support for HTTP/2 protocol was added to haproxy in version 1.8, therefore previous versions are not affected by this flaw. The version of haproxy shipped in OpenShift Container Platform 4 contains the vulnerable code, however exploitation requires setting ROUTER_USE_HTTP2 in the OpenShift Ingress Operator, which is not currently possible. The impact of this vulnerability is therefore reduced in OpenShift Container Platform 4 to Low.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | haproxy | Not affected | ||
| Red Hat Enterprise Linux 7 | haproxy | Not affected | ||
| Red Hat Enterprise Linux 8 | haproxy | Fixed | RHSA-2020:1725 | 28.04.2020 |
| Red Hat OpenShift Container Platform 3.11 | haproxy | Fixed | RHSA-2020:1287 | 07.04.2020 |
| Red Hat OpenShift Container Platform 4.4 | haproxy | Fixed | RHSA-2020:1936 | 04.05.2020 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7 | rh-haproxy18-haproxy | Fixed | RHSA-2020:2265 | 26.05.2020 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | rh-haproxy18-haproxy | Fixed | RHSA-2020:2265 | 26.05.2020 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.7 EUS | rh-haproxy18-haproxy | Fixed | RHSA-2020:2265 | 26.05.2020 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.9 Medium
CVSS3
Связанные уязвимости
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line feed (LF, ASCII 0xa), and the zero character (NUL, ASCII 0x0), aka Intermediary Encapsulation Attacks.
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line feed (LF, ASCII 0xa), and the zero character (NUL, ASCII 0x0), aka Intermediary Encapsulation Attacks.
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, ...
The HTTP/2 implementation in HAProxy before 2.0.10 mishandles headers, as demonstrated by carriage return (CR, ASCII 0xd), line feed (LF, ASCII 0xa), and the zero character (NUL, ASCII 0x0), aka Intermediary Encapsulation Attacks.
Уязвимость серверного программного обеспечения HAProxy, связанная с неправильным выполнением очистки HTTP-заголовков при преобразовании из HTTP/2 в HTTP/1, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
EPSS
5.9 Medium
CVSS3