Beveiligingsadvies

CVE-2013-2175

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2013-08-19 00:00:00
Laatst bijgewerkt 2024-08-06 15:27:41
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

HAProxy 1.4 before 1.4.24 and 1.5 before 1.5-dev19, when configured to use hdr_ip or other "hdr_*" functions with a negative occurrence count, allows remote attackers to cause a denial of service (negative array index usage and crash) via an HTTP header with a certain number of values, related to the MAX_HDR_HISTORY variable.