CVE-2025-32464
MEDIUMDescription
HAProxy 2.2 through 3.1.6, in certain uncommon configurations, has a sample_conv_regsub heap-based buffer overflow because of mishandling of the replacement of multiple short patterns with a longer one.
Is your site exposed to CVE-2025-32464?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
References
Frequently Asked Questions
What is CVE-2025-32464? +
How severe is CVE-2025-32464? +
How do I check if I'm vulnerable to CVE-2025-32464? +
Related Vulnerabilities
The Rattadan Cosmowarp smart contract before 56c6147 can have a comparison to an unintended value of current_admin.
In OpenStack Blazar before 17.0.1, the V2 lease API does not enforce object-level authorization on its update and delete operations …
A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when processing specific …
stoatchat (delta) versions before 20250210-1 (0.8.2) contain a logic error in the query messages route. When fetching messages 'nearby' another …
Punk::Plugin::TOTP versions before 0.05 for Perl accept another account's recovery code at the two-factor challenge because totp_use_recovery compares user identifiers …
Misskey is an open source, federated social media platform. The patch for CVE-2024-52591 did not sufficiently validate the relation between …