Intrusion Prevention

HAProxy.HTTP2.Frame.Size.Heap.Buffer.Overflow

Description

This indicates an attack attempt to exploit a Heap-based Buffer Overflow Vulnerability in HAProxy.
The vulnerability is due to an error in the vulnerable application when handling a maliciously crafted request. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application, via a crafted request.

Affected Products

HAProxy 1.8.7 and prior

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor:
http://git.haproxy.org/?p=haproxy.git;a=commitdiff;h=3f0e1ec70173593f4c2b3681b26c04a4ed5fc588

CVE References

CVE-2018-10184