CVE-2019-11323
09.05.2019, 14:29
HAProxy before 1.9.7 mishandles a reload with rotated keys, which triggers use of uninitialized, and very predictable, HMAC keys. This is related to an include/types/ssl_sock.h error.Enginsight
| Vendor | Product | Version |
|---|---|---|
| haproxy | haproxy | 1.9.2 ≤ 𝑥 < 1.9.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References