UbuntuUpdates.org

Package "keepalived"

Name: keepalived

Description:

Failover and monitoring daemon for LVS clusters

Latest version: 1:1.2.24-1ubuntu0.16.04.2
Release: xenial (16.04)
Level: security
Repository: main
Homepage: http://keepalived.org

Links


Download "keepalived"


Other versions of "keepalived" in Xenial

Repository Area Version
base main 1:1.2.19-1
updates main 1:1.2.24-1ubuntu0.16.04.2

Changelog

Version: 1:1.2.24-1ubuntu0.16.04.2 2019-05-28 14:06:56 UTC

  keepalived (1:1.2.24-1ubuntu0.16.04.2) xenial-security; urgency=medium

  * SECURITY UPDATE: heap-based overflow in HTTP status codes parsing
    - debian/patches/CVE-2018-19115.patch: refactor parsing in lib/html.c.
    - CVE-2018-19115

 -- Marc Deslauriers <email address hidden> Thu, 14 Feb 2019 11:01:38 -0500

CVE-2018-19115 keepalived before 2.0.7 has a heap-based buffer overflow when parsing HTTP status codes resulting in DoS or possibly unspecified other impact, becaus



About   -   Send Feedback to @ubuntu_updates