Back to bug 1322718

Who When What Removed Added
Adam Mariš 2016-03-31 08:26:14 UTC Depends On 1322719
Adam Mariš 2016-03-31 08:26:23 UTC Depends On 1322720
Adam Mariš 2016-03-31 08:26:32 UTC Depends On 1322721
Adam Mariš 2016-03-31 08:27:52 UTC Blocks 1322723
Adam Mariš 2016-03-31 08:28:25 UTC Depends On 1318796
Brandon Perkins 2016-03-31 09:03:40 UTC CC bperkins
Salvatore Bonaccorso 2016-03-31 16:02:04 UTC CC carnil
Brenton Leanhardt 2016-04-04 18:31:02 UTC CC bbennett, bleanhar
Kurt Seifried 2016-04-11 22:08:00 UTC Blocks 1326107
Kurt Seifried 2016-04-29 16:57:04 UTC Alias CVE-2016-3711
Kurt Seifried 2016-04-29 16:57:11 UTC Summary haproxy: Setting cookie containing internal IP address of a pod CVE-2016-3711 haproxy: Setting cookie containing internal IP address of a pod
Kurt Seifried 2016-05-04 19:34:13 UTC Whiteboard impact=low,public=20160317,reported=20160317,source=customer,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cwe=CWE-200,openshift-enterprise-2/haproxy=new,openshift-enterprise-2/haproxy15side=new,openshift-1/haproxy=affected,openshift-1/haproxy15=affected,openshift-1/haproxy15side=affected impact=low,public=20160317,reported=20160317,source=customer,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cwe=CWE-200,openshift-enterprise-2/haproxy=notaffected,openshift-enterprise-2/haproxy15side=new,openshift-1/haproxy=affected,openshift-1/haproxy15=affected,openshift-1/haproxy15side=affected
Kurt Seifried 2016-05-04 19:37:27 UTC Whiteboard impact=low,public=20160317,reported=20160317,source=customer,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cwe=CWE-200,openshift-enterprise-2/haproxy=notaffected,openshift-enterprise-2/haproxy15side=new,openshift-1/haproxy=affected,openshift-1/haproxy15=affected,openshift-1/haproxy15side=affected impact=low,public=20160317,reported=20160317,source=customer,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cwe=CWE-200,openshift-enterprise-2/haproxy=notaffected,openshift-enterprise-2/haproxy15side=notaffected,openshift-1/haproxy=affected,openshift-1/haproxy15=affected,openshift-1/haproxy15side=affected,openshift-enterprise-3/haproxy=affected
Kurt Seifried 2016-05-04 23:40:43 UTC Blocks 1326106
Kurt Seifried 2016-05-05 19:11:56 UTC Doc Text An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise. Specifically a cookie with the name “OPENSHIFT_<namespace>_SERVERID” is set that contains the internal IP address of the pod.
Martin Prpič 2016-05-09 16:11:02 UTC Doc Text An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise. Specifically a cookie with the name “OPENSHIFT_<namespace>_SERVERID” is set that contains the internal IP address of the pod. An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise; a cookie with the name “OPENSHIFT_<namespace>_SERVERID” was set, which contained the internal IP address of a pod.
Martin Prpič 2016-05-09 16:15:10 UTC Doc Text An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise; a cookie with the name “OPENSHIFT_<namespace>_SERVERID” was set, which contained the internal IP address of a pod. An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise; a cookie with the name “OPENSHIFT_[namespace]_SERVERID” was set, which contained the internal IP address of a pod.
Martin Prpič 2016-05-09 16:15:29 UTC Doc Text An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise; a cookie with the name “OPENSHIFT_[namespace]_SERVERID” was set, which contained the internal IP address of a pod. An information disclosure flaw was discovered in haproxy as used by OpenShift Enterprise; a cookie with the name "OPENSHIFT_[namespace]_SERVERID" was set, which contained the internal IP address of a pod.
Kurt Seifried 2016-05-12 16:49:36 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2016-05-12 12:49:36 UTC
Sam Fowler 2018-04-19 00:49:02 UTC CC sfowler
Product Security DevOps Team 2019-09-29 13:46:44 UTC Whiteboard impact=low,public=20160317,reported=20160317,source=customer,cvss2=1.9/AV:L/AC:M/Au:N/C:P/I:N/A:N,cwe=CWE-200,openshift-enterprise-2/haproxy=notaffected,openshift-enterprise-2/haproxy15side=notaffected,openshift-1/haproxy=affected,openshift-1/haproxy15=affected,openshift-1/haproxy15side=affected,openshift-enterprise-3/haproxy=affected

Back to bug 1322718