Assuming that people have deployed eg HAProxy, there are like a dozen different timeout options that you can specify to deal with edge cases.
When you have enough clients those edge cases start to matter quite a lot.
So assuming you’ve configured all those timeouts in HAProxy, are you safe?
No. What HAProxy docs do not sufficiently emphasize is that you need to set a bunch of kernel/tcp level settings as well in order for HAProxy to behave reasonably.