CVE-2022-0711
Summary
| CVE | CVE-2022-0711 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-03-02 22:15:00 UTC |
| Updated | 2023-11-07 03:41:00 UTC |
| Description | A flaw was found in the way HAProxy processed HTTP responses containing the "Set-Cookie2" header. This flaw could allow an attacker to send crafted HTTP response packets which lead to an infinite loop, eventually resulting in a denial of service condition. The highest threat from this vulnerability is availability. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 179145 Debian Security Update for haproxy (DSA 5102-1)
- 183652 Debian Security Update for haproxy (CVE-2022-0711)
- 198687 Ubuntu Security Notification for HAProxy Vulnerability (USN-5312-1)
- 240192 Red Hat OpenShift Container Platform 4.9 Security Update (RHSA-2022:1021)
- 240213 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2022:1153)
- 240227 Red Hat OpenShift Container Platform 4.7 Security Update (RHSA-2022:1336)
- 240264 Red Hat OpenShift Container Platform 4.6 Security Update (RHSA-2022:1620)
- 356222 Amazon Linux Security Advisory for haproxy2 : ALASHAPROXY2-2023-001
- 356489 Amazon Linux Security Advisory for haproxy2 : ALAS2HAPROXY2-2023-001
- 500241 Alpine Linux Security Update for haproxy
- 671741 EulerOS Security Update for haproxy (EulerOS-SA-2022-1806)
- 671753 EulerOS Security Update for haproxy (EulerOS-SA-2022-1789)
- 671781 EulerOS Security Update for haproxy (EulerOS-SA-2022-1866)
- 671820 EulerOS Security Update for haproxy (EulerOS-SA-2022-1842)
- 753326 SUSE Enterprise Linux Security Update for haproxy (SUSE-SU-2022:2277-1)
- 770146 Red Hat OpenShift Container Platform 4.9 Security Update (RHSA-2022:1021)
- 770147 Red Hat OpenShift Container Platform 4.8 Security Update (RHSA-2022:1153)
- 770149 Red Hat OpenShift Container Platform 4.7 Security Update (RHSA-2022:1336)
- 770151 Red Hat OpenShift Container Platform 4.6 Security Update (RHSA-2022:1620)
- 901231 Common Base Linux Mariner (CBL-Mariner) Security Update for haproxy (8899)
- 906348 Common Base Linux Mariner (CBL-Mariner) Security Update for haproxy (8899-2)