LWN.net Logo

Scientific Linux alert SL-hapr-20130730 (haproxy)

From:  Pat Riehecky <riehecky@fnal.gov>
To:  <scientific-linux-errata@listserv.fnal.gov>
Subject:  Security ERRATA Moderate: haproxy on SL6.x i386/x86_64
Date:  Tue, 30 Jul 2013 19:15:33 +0000
Message-ID:  <20130730191533.11789.25398@slpackages.fnal.gov>
Archive-link:  Article, Thread

Synopsis: Moderate: haproxy security update Advisory ID: SLSA-2013:1120-1 Issue Date: 2013-07-30 CVE Numbers: CVE-2013-2175 -- A flaw was found in the way HAProxy handled requests when the proxy's configuration ("/etc/haproxy/haproxy.cfg") had certain rules that use the hdr_ip criterion. A remote attacker could use this flaw to crash HAProxy instances that use the affected configuration. (CVE-2013-2175) -- SL6 x86_64 haproxy-1.4.22-5.el6_4.x86_64.rpm haproxy-debuginfo-1.4.22-5.el6_4.x86_64.rpm i386 haproxy-1.4.22-5.el6_4.i686.rpm haproxy-debuginfo-1.4.22-5.el6_4.i686.rpm - Scientific Linux Development Team


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds