CVE-2012-2942
Publication date 27 May 2012
Last updated 24 July 2024
Ubuntu priority
Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.
Status
Package | Ubuntu Release | Status |
---|---|---|
haproxy | 13.04 raring |
Fixed 1.4.18-0ubuntu3
|
12.10 quantal |
Fixed 1.4.18-0ubuntu2.1
|
|
12.04 LTS precise |
Fixed 1.4.18-0ubuntu1.1
|
|
11.10 oneiric |
Fixed 1.4.15-1ubuntu0.1
|
|
11.04 natty | Ignored end of life | |
10.04 LTS lucid | Ignored end of life | |
8.04 LTS hardy | Ignored end of life |
Notes
Patch details
Package | Patch details |
---|---|
haproxy |
References
Related Ubuntu Security Notices (USN)
- USN-1800-1
- HAProxy vulnerabilities
- 15 April 2013