Bugzilla – Bug 977997
VUL-0: CVE-2016-3711: haproxy: Setting cookie containing internal IP address of a pod
Last modified: 2016-06-09 12:21:26 UTC
rh#1322718 References: https://bugzilla.redhat.com/show_bug.cgi?id=1322718 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-3711
This is not a bug in haproxy, this is a bug in openshift. Here is the fix for it in openshift: https://github.com/openshift/origin/pull/8334