CVE-2012-2942: Haproxy
Medium severity, CVSS 5.1. EPSS: 5.4% chance of exploitation in the next 30 days.
Buffer overflow in the trash buffer in the header capture functionality in HAProxy before 1.4.21, when global.tune.bufsize is set to a value greater than the default and header rewriting is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors.
Affected products
- Haproxy Haproxy: up to and including 1.4.20
Published 2012-05-27. Last modified 2026-06-16.