Publishing details

Changelog

haproxy (1.8.8-1ubuntu0.13) bionic-security; urgency=medium

  * SECURITY UPDATE: incorrect handling of empty http header field names
    - debian/patches/CVE-2023-25725.patch: properly reject empty http
      header field names in src/h1.c, src/hpack-dec.c,
      include/common/hpack-tbl.h.
    - CVE-2023-25725

 -- Marc Deslauriers <email address hidden>  Mon, 13 Feb 2023 07:59:11 -0500

Available diffs

Builds

Built packages

Package files