CVE-2023-0056
Summary
| CVE | CVE-2023-0056 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-23 21:15:00 UTC |
| Updated | 2023-04-03 17:42:00 UTC |
| Description | An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated remote attacker to run a specially crafted malicious server in an OpenShift cluster. The biggest impact is to availability. |
Risk And Classification
Problem Types: CWE-400
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Red Hat Customer Portal - Access to 24x7 support and knowledge | MISC | access.redhat.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160544 Oracle Enterprise Linux Security Update for haproxy (ELSA-2023-1696)
- 181560 Debian Security Update for haproxy (DSA 5348-1)
- 184516 Debian Security Update for haproxy (CVE-2023-0056)
- 199125 Ubuntu Security Notification for HAProxy Vulnerability (USN-5819-1)
- 241339 Red Hat Update for haproxy (RHSA-2023:1696)
- 241387 Red Hat Update for haproxy (RHSA-2023:1978)
- 241546 Red Hat OpenShift Container Platform 4.13 Security Update (RHSA-2023:1325)
- 283747 Fedora Security Update for haproxy (FEDORA-2023-7e04833463)
- 283748 Fedora Security Update for haproxy (FEDORA-2023-3e8a21cd5b)
- 356260 Amazon Linux Security Advisory for haproxy2 : ALASHAPROXY2-2023-004
- 356467 Amazon Linux Security Advisory for haproxy2 : ALAS2HAPROXY2-2023-004
- 673122 EulerOS Security Update for haproxy (EulerOS-SA-2023-2269)
- 673164 EulerOS Security Update for haproxy (EulerOS-SA-2023-2293)
- 753572 SUSE Enterprise Linux Security Update for haproxy (SUSE-SU-2023:0153-1)
- 753687 SUSE Enterprise Linux Security Update for haproxy (SUSE-SU-2023:0412-1)
- 753693 SUSE Enterprise Linux Security Update for haproxy (SUSE-SU-2023:0413-1)
- 770186 Red Hat OpenShift Container Platform 4.13 Security Update (RHSA-2023:1325)
- 940990 AlmaLinux Security Update for haproxy (ALSA-2023:1696)