CVE-2018-20615
An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x through 1.9.0 which can result in a … (CVE-2018-20615)
Description
An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x through 1.9.0 which can result in a crash. The processing of the PRIORITY flag in a HEADERS frame requires 5 extra bytes, and while these bytes are skipped, the total frame length was not re-checked to make sure they were present in the frame.
Metrics
Affected operating systems
linux
redhat / enterprise_linux7.0
linux
redhat / enterprise_linux7.4
linux
redhat / enterprise_linux7.5
linux
redhat / enterprise_linux7.6
linux
opensuse / leap15.0
linux
canonical / ubuntu_linux16.04
linux
canonical / ubuntu_linux18.04
linux
canonical / ubuntu_linux18.10
Affected products
Products and version ranges extracted from the vendor/CERT advisory. A range like „<4.14.6“ implies the update recommendation „upgrade to 4.14.6 or later“.
haproxy
haproxy1.8.0 – 1.8.19
haproxy
haproxy
redhat
openshift_container_platform
References & sources
- http://www.securityfocus.com/bid/106645vdb-entryx_refsource_BID
- https://access.redhat.com/errata/RHSA-2019:0275vendor-advisoryx_refsource_REDHAT
- http://lists.opensuse.org/opensuse-security-announce/2019-02/msg00018.htmlmailing-listx_refsource_MLIST
- https://usn.ubuntu.com/3858-1/vendor-advisoryx_refsource_UBUNTU
- https://www.mail-archive.com/haproxy%40formilux.org/msg32304.htmlmailing-listx_refsource_MLIST
- https://access.redhat.com/errata/RHBA-2019:0327vendor-advisoryx_refsource_REDHAT