CVE-2019-11323
09.05.2019, 14:29
HAProxy before 1.9.7 mishandles a reload with rotated keys, which triggers use of uninitialized, and very predictable, HMAC keys. This is related to an include/types/ssl_sock.h error.Enginsight
Vendor | Product | Version |
---|---|---|
haproxy | haproxy | 1.9.2 ≤ 𝑥 < 1.9.7 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References