CVE-2014-6269 REJECTED

Multiple integer overflows in the http_request_forward_body function in proto_http.c in HAProxy 1.5-dev23 before 1.5.4 allow remote attackers to cause a denial of service (crash) via a large stream of data, which triggers a buffer overflow and an out-of-bounds read.

EPSS 0.11% · 28.7th percentile

Risk Scores

EPSS Score
0.11%
28.7th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTShaproxy0, 1.4.24-1

Timeline

References

Open in Interactive Console →