[Pkg-haproxy-maintainers] Bug#826869: haproxy: CVE-2016-5360: remote denial of service via reqdeny

Salvatore Bonaccorso carnil at debian.org
Thu Jun 9 16:23:34 UTC 2016


Source: haproxy
Version: 1.6.0+ds1-1
Severity: important
Tags: security upstream patch fixed-upstream

Hi,

the following vulnerability was published for haproxy.

CVE-2016-5360[0]:
remote denial of service via reqdeny

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2016-5360
[1] http://www.openwall.com/lists/oss-security/2016/06/09/5
[2] http://git.haproxy.org/?p=haproxy-1.6.git;a=commit;h=60f01f8c89e4fb2723d5a9f2046286e699567e0b
[3] http://www.openwall.com/lists/oss-security/2016/06/09/6

Regards,
Salvatore



More information about the Pkg-haproxy-maintainers mailing list