Oval Definition:oval:org.opensuse.security:def:201814645
Revision Date:2022-06-30Version:1
Title:CVE-2018-14645
Description:

A flaw was discovered in the HPACK decoder of HAProxy, before 1.8.14, that is used for HTTP/2. An out-of-bounds read access in hpack_valid_idx() resulted in a remote crash and denial of service.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-14645
SUSE-SU-2018:3249-1
openSUSE-SU-2018:3324-1
Mitre CVE-2018-14645
SUSE CVE-2018-14645
SUSE-SU-2018:3249-1
openSUSE-SU-2018:3324-1
Platform(s):openSUSE Leap 15.0
openSUSE Tumbleweed
SUSE Linux Enterprise High Availability 15
SUSE Linux Enterprise High Availability 15 SP1
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Retail Branch Server 4.0
SUSE Manager Server 4.0
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • haproxy-1.8.14~git0.52e4d43b-lp150.2.3 is installed
  • AND haproxy is signed with openSUSE key
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 is installed
  • AND haproxy-1.8.14~git0.52e4d43b-3.3 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Availability 15 is installed
  • AND haproxy-1.8.14~git0.52e4d43b-3.3 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • AND haproxy-1.8.17~git0.e89d25b2-6 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • AND haproxy-1.8.17~git0.e89d25b2-6 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND haproxy-2.4.4+git0.acb1d0bea-1.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • AND haproxy-1.8.17~git0.e89d25b2-6.23 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • AND haproxy-1.8.17~git0.e89d25b2-6.23 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Availability 15 is installed
  • AND haproxy-1.8.14~git0.52e4d43b-3.3.2 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND haproxy is not affected
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 8 is installed
  • OR SUSE OpenStack Cloud Crowbar 8 is installed
  • AND haproxy is not affected
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Availability 15 SP1 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP1 is installed
  • OR SUSE Linux Enterprise Server 15 SP1 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP1 is installed
  • OR SUSE Manager Proxy 4.0 is installed
  • OR SUSE Manager Retail Branch Server 4.0 is installed
  • OR SUSE Manager Server 4.0 is installed
  • AND haproxy-1.8.17~git0.e89d25b2-6.23 is installed
  • BACK