Ubuntu Security Update USN-7135-1: HAProxy vulnerability

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,843
Reaction score
74
Credits
-1,257
Bahruz Jabiyev, Anthony Gavazzi, Engin Kirda, Kaan Onarlioglu, Adi Peleg, and Harvey Tuch discovered that HAProxy incorrectly handled empty header names. A remote attacker could possibly use this issue to manipulate headers and bypass certain authentication checks and restrictions.

Continue reading...
 


Follow Linux.org

Members online


Top