ELSA-2026-55679 - haproxy security update
| Type: | SECURITY |
| Impact: | IMPORTANT |
| Release Date: | 2026-08-17 |
Description
[3.0.5-6.2]
- Fix uint16_t overflow in FCGI demux record length (CVE-2026-55203)
Resolves: RHEL-211068
- Fix NULL pointer dereference in hpack_dht_insert() (CVE-2026-55204)
Resolves: RHEL-211081
Related CVEs
Updated Packages
| Release/Architecture | Filename | sha256 | Superseded By Advisory | Channel Label |
|
| Oracle Linux 10 (aarch64) | haproxy-3.0.5-6.el10_2.2.src.rpm | 33c4d94bd7d90d26fb82c855ab54c90fae670e69164a5d4fabff699591ae6ebc | - | ol10_aarch64_appstream |
| haproxy-3.0.5-6.el10_2.2.aarch64.rpm | 46b3cae6824a99f28bb96ddebb779488776a515f52ef872b92b2d4a869c54c4e | - | ol10_aarch64_appstream |
|
| Oracle Linux 10 (x86_64) | haproxy-3.0.5-6.el10_2.2.src.rpm | 33c4d94bd7d90d26fb82c855ab54c90fae670e69164a5d4fabff699591ae6ebc | - | ol10_x86_64_appstream |
| haproxy-3.0.5-6.el10_2.2.x86_64.rpm | 8db0a945d6b4cdf003dcfd908961a77b7b2dcc4b1432a1d0cd4f4482ca613426 | - | ol10_x86_64_appstream |
This page is generated automatically and has not been checked for errors or omissions. For clarification
or corrections please contact the Oracle Linux ULN team