First published: Wed Apr 23 2025(Updated: )
USN-7431-1 fixed a vulnerability in HAProxy. This update provides the corresponding update for Ubuntu 25.04. Original advisory details: Aleandro Prudenzano and Edoardo Geraci discovered that HAProxy incorrectly handled certain uncommon configurations that replace multiple short patterns with a longer one. A remote attacker could use this issue to cause HAProxy to crash, resulting in a denial of service, or possibly execute arbitrary code.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/haproxy | <3.0.8-1ubuntu1.1 | 3.0.8-1ubuntu1.1 |
Ubuntu | =25.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-7431-2 is considered medium due to potential impact on HAProxy configurations.
To fix USN-7431-2, update the HAProxy package to version 3.0.8-1ubuntu1.1.
USN-7431-2 addresses a vulnerability in HAProxy related to improper handling of certain configurations.
USN-7431-2 affects Ubuntu 25.04.
The vulnerability in USN-7431-2 was discovered by Aleandro Prudenzano and Edoardo Geraci.