RHSA-2024:10267: Moderate: haproxy security update
Moderate: haproxy security update
Other sources
The haproxy packages provide a reliable, high-performance network load balancer for TCP and HTTP-based applications.Security Fix(es): haproxy: untrimmed URI fragments may lead to exposure of confidential data on static servers (CVE-2023-45539) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:10267?
The severity of RHSA-2024:10267 is classified as moderate.
How do I fix RHSA-2024:10267?
To fix RHSA-2024:10267, update haproxy to version 1.8.27-5.el8_8.1 or later.
What vulnerabilities are addressed in RHSA-2024:10267?
RHSA-2024:10267 addresses a vulnerability where untrimmed URI fragments may lead to the exposure of confidential data.
Which versions of haproxy are affected by RHSA-2024:10267?
Versions of haproxy prior to 1.8.27-5.el8_8.1 are affected by RHSA-2024:10267.
What are the impacted systems for RHSA-2024:10267?
RHSA-2024:10267 impacts various Red Hat Enterprise Linux systems including x86_64, ARM 64, Power, and IBM z Systems.