Lucene search

K
redhatcveRedhat.comRH:CVE-2018-19115
HistoryOct 10, 2019 - 11:58 a.m.

CVE-2018-19115

2019-10-1011:58:24
redhat.com
access.redhat.com
9

0.013 Low

EPSS

Percentile

85.9%

Heap-based buffer overflow vulnerability in extract_status_code() function in lib/html.c that parses HTTP status code returned from web server allows malicious web server or man-in-the-middle attacker pretending to be a web server to cause either a denial of service or potentially execute arbitrary code on keepalived load balancer.