Dear HAProxy team,I write to you today to ask more about the issue being described in the following commit:
https://git.haproxy.org/?p=haproxy-3.0.git;a=commitdiff;h=52d8b01acdc1e21aeda985c87a9ad1229149d3f2To be more specific, I ask about the crash which is said to be caused by a use-after-free (UAF) condition. Would it be possible to confirm if said issue is considered security-relevant by the HAProxy team?
If the issue is indeed classified as a possible security vulnerability, would it be ok to request a CVE ID for it?
Thank you for your time and consideration, and any information you can provide regarding this.
Regards, -- Camila Camargo de Matos Security Engineer @ SUSE Software Solutions GPG: B9DF 0F03 0640 E780 6B47 E60E BF36 BDE9 D034 30D1
OpenPGP_signature.asc
Description: OpenPGP digital signature