<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T07:48:47.377864+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2020-02035</id>
    <title>bdu:2020-02035</title>
    <updated>2026-10-04T07:48:47.582485+00:00</updated>
    <content>bdu:2020-02035</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2020-02035"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-haproxy-2020-11100</id>
    <title>BIT-haproxy-2020-11100</title>
    <updated>2026-10-04T07:48:47.582535+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: haproxy</p>
<p>In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-haproxy-2020-11100"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-185</id>
    <title>certfr-2020-avi-185 — Une vulnérabilité a été découverte dans HAProxy. Elle permet à un
attaquant de provoquer une exécution de code arbitrai…</title>
    <updated>2026-10-04T07:48:47.582579+00:00</updated>
    <content>certfr-2020-avi-185</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-185"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-ac64135</id>
    <title>Withdrawn: CLEANSTART-2026-AC64135 — Security fixes for CVE-2020-11100 applied in versions: 2.1.4-r0</title>
    <updated>2026-10-04T07:48:47.582608+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: haproxy</p>
<p>Security vulnerability affects the haproxy package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-ac64135"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-23177</id>
    <title>cnvd-2020-23177</title>
    <updated>2026-10-04T07:48:47.582643+00:00</updated>
    <content>cnvd-2020-23177</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-23177"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-40336</id>
    <title>EUVD-2026-40336</title>
    <updated>2026-10-04T07:48:47.582665+00:00</updated>
    <content>EUVD-2026-40336</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-40336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-11100</id>
    <title>fkie_cve-2020-11100</title>
    <updated>2026-10-04T07:48:47.582683+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-11100"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3xcv-57q9-hrj2</id>
    <title>GHSA-3xcv-57q9-hrj2</title>
    <updated>2026-10-04T07:48:47.582714+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3xcv-57q9-hrj2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-11100</id>
    <title>gsd-2020-11100</title>
    <updated>2026-10-04T07:48:47.582740+00:00</updated>
    <content>gsd-2020-11100</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-11100"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:1287</id>
    <title>RHSA-2020:1287 — Red Hat Security Advisory: OpenShift Container Platform 3.11 security update</title>
    <updated>2026-10-04T07:48:47.582759+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>haproxy: HTTP request smuggling issue with transfer-encoding header containing an obfuscated "chunked" value haproxy: HTTP/2 implementation vulnerable to intermediary encapsulation attacks haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:1287"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2020:1288</id>
    <title>RHSA-2020:1288 — Red Hat Security Advisory: haproxy security update</title>
    <updated>2026-10-04T07:48:47.582796+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2020:1288"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11100</id>
    <title>UBUNTU-CVE-2020-11100</title>
    <updated>2026-10-04T07:48:47.582824+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: haproxy</p>
<p>In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11100"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2475</id>
    <title>WID-SEC-W-2023-2475 — Red Hat Enterprise Linux: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit den Rechten des Dienstes</title>
    <updated>2026-10-04T07:48:47.582857+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux, Red Hat OpenShift Container Platform und SUSE Linux ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen oder einen Denial of Service Zustand herzustellen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2475"/>
  </entry>
</feed>
