CVE-2018-14645
21.09.2018, 13:29
A flaw was discovered in the HPACK decoder of HAProxy, before 1.8.14, that is used for HTTP/2. An out-of-bounds read access in hpack_valid_idx() resulted in a remote crash and denial of service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| haproxy | haproxy | 𝑥 ≤ 1.8.14 |
| canonical | ubuntu_linux | 18.04 |
| redhat | openshift | 3.10 |
| redhat | openshift_container_platform | 3.9 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux | 7.3 |
| redhat | enterprise_linux | 7.4 |
| redhat | enterprise_linux | 7.5 |
| redhat | enterprise_linux | 7.6 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References