5

CVE-2014-6269

Exploit

Multiple integer overflows in the http_request_forward_body function in proto_http.c in HAProxy 1.5-dev23 before 1.5.4 allow remote attackers to cause a denial of service (crash) via a large stream of data, which triggers a buffer overflow and an out-of-bounds read.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HaproxyHaproxy Version1.5 Updatedev23
HaproxyHaproxy Version1.5 Updatedev24
HaproxyHaproxy Version1.5 Updatedev25
HaproxyHaproxy Version1.5 Updatedev26
HaproxyHaproxy Version1.5.0
HaproxyHaproxy Version1.5.1
HaproxyHaproxy Version1.5.2
HaproxyHaproxy Version1.5.3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.12% 0.284
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P