Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The buffer_slow_realign function in HAProxy 1.5.x before 1.5.14 and 1.6-dev does not properly realign a buffer that is used for pending outgoing data, which allows remote attackers to obtain sensitive information (uninitialized memory contents of previous requests) via a crafted request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HAProxy 缓冲区错误漏洞
Vulnerability Description
Haproxy HAProxy是法国Haproxy公司的一款开源的TCP/HTTP负载均衡服务器。该服务器提供4层、7层代理,并能支持上万级别的连接,具有高效、稳定等特点。 HAProxy 1.5.14之前1.5.x版本和1.6-dev版本存在缓冲区错误漏洞,该漏洞源于程序没有正确重组用于存放输出数据的缓冲区。远程攻击者可通过发送特制的请求利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A