Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set on the product. As a result, the attacker may obtain sensitive information.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.9.10-1ubuntu1", "binary_name": "haproxy" }, { "binary_version": "2.9.10-1ubuntu1", "binary_name": "haproxy-dbgsym" }, { "binary_version": "2.9.10-1ubuntu1", "binary_name": "haproxy-doc" }, { "binary_version": "2.9.10-1ubuntu1", "binary_name": "vim-haproxy" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "2.8.5-1ubuntu3.2", "binary_name": "haproxy" }, { "binary_version": "2.8.5-1ubuntu3.2", "binary_name": "haproxy-dbgsym" }, { "binary_version": "2.8.5-1ubuntu3.2", "binary_name": "haproxy-doc" }, { "binary_version": "2.8.5-1ubuntu3.2", "binary_name": "vim-haproxy" } ] }