Inconsistent interpretation of HTTP requests ('HTTP Request/Response Smuggling') issue exists in HAProxy. If this vulnerability is exploited, a remote attacker may access a path that is restricted by ACL (Access Control List) set on the product. As a result, the attacker may obtain sensitive information.
{ "ubuntu_priority": "medium", "availability": "No subscription required", "binaries": [ { "binary_name": "haproxy", "binary_version": "2.9.10-1ubuntu1" }, { "binary_name": "haproxy-dbgsym", "binary_version": "2.9.10-1ubuntu1" }, { "binary_name": "haproxy-doc", "binary_version": "2.9.10-1ubuntu1" }, { "binary_name": "vim-haproxy", "binary_version": "2.9.10-1ubuntu1" } ] }
{ "ubuntu_priority": "medium", "availability": "No subscription required", "binaries": [ { "binary_name": "haproxy", "binary_version": "2.8.5-1ubuntu3.2" }, { "binary_name": "haproxy-dbgsym", "binary_version": "2.8.5-1ubuntu3.2" }, { "binary_name": "haproxy-doc", "binary_version": "2.8.5-1ubuntu3.2" }, { "binary_name": "vim-haproxy", "binary_version": "2.8.5-1ubuntu3.2" } ] }