Multiple integer overflows in the http_request_forward_body function in proto_http.c in HAProxy 1.5-dev23 before 1.5.4 allow remote attackers to cause a denial of service (crash) via a large stream of data, which triggers a buffer overflow and an out-of-bounds read.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Haproxy | Haproxy | 1.5 | 1.5 |
Haproxy | Haproxy | 1.5 | 1.5 |
Haproxy | Haproxy | 1.5 | 1.5 |
Haproxy | Haproxy | 1.5 | 1.5 |
Haproxy | Haproxy | 1.5.0 | 1.5.0 |
Haproxy | Haproxy | 1.5.1 | 1.5.1 |
Haproxy | Haproxy | 1.5.2 | 1.5.2 |
Haproxy | Haproxy | 1.5.3 | 1.5.3 |
Red Hat Enterprise Linux 7 | RedHat | haproxy-0:1.5.2-3.el7_0 | * |
Haproxy | Ubuntu | upstream | * |