[Git][security-tracker-team/security-tracker][master] CVE-2024-53008/haproxy: Ignore in bookworm, HTTP/3 code is not built

Adrian Bunk (@bunk) bunk at debian.org
Tue Apr 29 14:54:13 BST 2025



Adrian Bunk pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ab9fa878 by Adrian Bunk at 2025-04-29T16:53:20+03:00
CVE-2024-53008/haproxy: Ignore in bookworm, HTTP/3 code is not built

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -47484,6 +47484,7 @@ CVE-2024-53260 (Autolab is a course management service that enables auto-graded
 	NOT-FOR-US: Autolab
 CVE-2024-53008 (Inconsistent interpretation of HTTP requests ('HTTP Request/Response S ...)
 	- haproxy 2.9.10-1
+	[bookworm] - haproxy <ignored> (USE_QUIC not enabled before 2.8.4-2)
 	[bullseye] - haproxy <not-affected> (Vulnerabel code added in v2.6)
 	NOTE: https://git.haproxy.org/?p=haproxy-2.6.git;a=commit;h=fa8b221756076186315b6bbf17ef697ec1ef5695 (v2.6.19)
 	NOTE: https://git.haproxy.org/?p=haproxy-2.6.git;a=commit;h=94d74d24ec9c3710334ab2239b1996faab3ad01e (v2.6.19)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ab9fa878ab11336cca6c39e794be976027ec9d5a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ab9fa878ab11336cca6c39e794be976027ec9d5a
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250429/29f3e1a7/attachment.htm>


More information about the debian-security-tracker-commits mailing list