Out-of-bounds read in HAProxy - CVE-2018-20615
Published: January 22, 2019
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to incorrect frame length validation when processing headers with priority flags set. A remote attacker can send a specially crafted HTTP/2 request, trigger our-of-bounds read and crash the affected application.
Affected software
haproxy (Ubuntu package)
rh-haproxy18-haproxy (Red Hat package)
Red Hat OpenShift Container Platform
Opensuse
How to mitigate CVE-2018-20615
haproxy (Ubuntu package) - addressed in versions 1.6.3-1ubuntu0.2, 1.8.8-1ubuntu0.3, 1.8.13-2ubuntu0.1
rh-haproxy18-haproxy (Red Hat package) - update to 1.8.4-4.el7