<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 08:49:37 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-02035</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-02035</link>
      <description>bdu:2020-02035</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-02035</guid>
    </item>
    <item>
      <title>BIT-haproxy-2020-11100</title>
      <link>https://cve.radiocsirt.org/vuln/bit-haproxy-2020-11100</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: haproxy&lt;/p&gt;
&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: haproxy&lt;/p&gt;
&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-haproxy-2020-11100</guid>
    </item>
    <item>
      <title>certfr-2020-avi-185 — Une vulnérabilité a été découverte dans HAProxy. Elle permet à un
attaquant de provoquer une exécution de code arbitrai…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-185</link>
      <description>certfr-2020-avi-185</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-185</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-AC64135 — Security fixes for CVE-2020-11100 applied in versions: 2.1.4-r0</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-ac64135</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: haproxy&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the haproxy package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: haproxy&lt;/p&gt;
&lt;p&gt;Security vulnerability affects the haproxy package. This issue is resolved in later releases. See references for vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-ac64135</guid>
    </item>
    <item>
      <title>cnvd-2020-23177</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-23177</link>
      <description>cnvd-2020-23177</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-23177</guid>
    </item>
    <item>
      <title>EUVD-2026-40336</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-40336</link>
      <description>EUVD-2026-40336</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-40336</guid>
    </item>
    <item>
      <title>fkie_cve-2020-11100</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-11100</link>
      <description>&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-11100</guid>
    </item>
    <item>
      <title>GHSA-3xcv-57q9-hrj2</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3xcv-57q9-hrj2</link>
      <description>&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3xcv-57q9-hrj2</guid>
    </item>
    <item>
      <title>gsd-2020-11100</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-11100</link>
      <description>gsd-2020-11100</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-11100</guid>
    </item>
    <item>
      <title>RHSA-2020:1287 — Red Hat Security Advisory: OpenShift Container Platform 3.11 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:1287</link>
      <description>&lt;p&gt;haproxy: HTTP request smuggling issue with transfer-encoding header containing an obfuscated &amp;#34;chunked&amp;#34; value haproxy: HTTP/2 implementation vulnerable to intermediary encapsulation attacks haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;haproxy: HTTP request smuggling issue with transfer-encoding header containing an obfuscated &amp;#34;chunked&amp;#34; value haproxy: HTTP/2 implementation vulnerable to intermediary encapsulation attacks haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:1287</guid>
    </item>
    <item>
      <title>RHSA-2020:1288 — Red Hat Security Advisory: haproxy security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:1288</link>
      <description>&lt;p&gt;haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;haproxy: malformed HTTP/2 requests can lead to out-of-bounds writes&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:1288</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-11100</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11100</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: haproxy&lt;/p&gt;
&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: haproxy&lt;/p&gt;
&lt;p&gt;In hpack_dht_insert in hpack-tbl.c in the HPACK decoder in HAProxy 1.8 through 2.x before 2.1.4, a remote attacker can write arbitrary bytes around a certain location on the heap via a crafted HTTP/2 request, possibly causing remote code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-11100</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2475 — Red Hat Enterprise Linux: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit den Rechten des Dienstes</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2475</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux, Red Hat OpenShift Container Platform und SUSE Linux ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen oder einen Denial of Service Zustand herzustellen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux, Red Hat OpenShift Container Platform und SUSE Linux ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen oder einen Denial of Service Zustand herzustellen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2475</guid>
    </item>
  </channel>
</rss>
