HAProxy 1.8.x before version 1.8.8 is vulnerable to a heap-based buffer overflow in the mux_h2.c:h2_process_demux() function. A remote attacker could exploit this to overflow the heap by 16kb to cause a denial of service or other potential unspecified impact.
This flaw is present in HTTP/2 functionality, which does not exist in haproxy-1.5 as distributed in Red Hat Enterprise Linux 7 and Red Hat Enterprise Linux 6.
This issue has been addressed in the following products:
Red Hat Software Collections for Red Hat Enterprise Linux 7
Red Hat Software Collections for Red Hat Enterprise Linux 7.3 EUS
Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS
Via RHSA-2018:1372 https://access.redhat.com/errata/RHSA-2018:1372