CVE-2020-11100 | HAProxy up to 2.1.3 HPACK Decoder hpack-tbl.c hpack_dht_insert Request out-of-bounds write (Bug 1819111 / Nessus ID 236649)
A vulnerability, which was classified as critical, was found in HAProxy up to 2.1.3. Affected is the function hpack_dht_insert of the file hpack-tbl.c of the component HPACK Decoder. The manipulation as part of Request leads to out-of-bounds write.
This vulnerability is traded as CVE-2020-11100. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.