RHSA-2024:1142: Moderate: haproxy security update
Moderate: haproxy security update
Other sources
The haproxy packages provide a reliable, high-performance network load balancer for TCP and HTTP-based applications.Security Fix(es): haproxy: Proxy forwards malformed empty Content-Length headers (CVE-2023-40225) haproxy: untrimmed URI fragments may lead to exposure of confidential data on static servers (CVE-2023-45539) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1142?
The severity of RHSA-2024:1142 is moderate.
How do I fix RHSA-2024:1142?
To fix RHSA-2024:1142, upgrade to the haproxy version 2.4.22-3.el9_3 or later.
Which systems are affected by RHSA-2024:1142?
RHSA-2024:1142 affects Red Hat Enterprise Linux for x86_64, IBM z Systems, ARM 64, and Power little endian.
Is there a specific version required for the fix in RHSA-2024:1142?
Yes, the specific version required for the fix in RHSA-2024:1142 is 2.4.22-3.el9_3.
What package is related to the RHSA-2024:1142 vulnerability?
The package related to the RHSA-2024:1142 vulnerability is haproxy.