ELSA-2026-55679

ELSA-2026-55679 - haproxy security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2026-08-17

Description


[3.0.5-6.2]
- Fix uint16_t overflow in FCGI demux record length (CVE-2026-55203)
Resolves: RHEL-211068
- Fix NULL pointer dereference in hpack_dht_insert() (CVE-2026-55204)
Resolves: RHEL-211081


Related CVEs


CVE-2026-55203
CVE-2026-55204

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 10 (aarch64) haproxy-3.0.5-6.el10_2.2.src.rpm33c4d94bd7d90d26fb82c855ab54c90fae670e69164a5d4fabff699591ae6ebc-ol10_aarch64_appstream
haproxy-3.0.5-6.el10_2.2.aarch64.rpm46b3cae6824a99f28bb96ddebb779488776a515f52ef872b92b2d4a869c54c4e-ol10_aarch64_appstream
Oracle Linux 10 (x86_64) haproxy-3.0.5-6.el10_2.2.src.rpm33c4d94bd7d90d26fb82c855ab54c90fae670e69164a5d4fabff699591ae6ebc-ol10_x86_64_appstream
haproxy-3.0.5-6.el10_2.2.x86_64.rpm8db0a945d6b4cdf003dcfd908961a77b7b2dcc4b1432a1d0cd4f4482ca613426-ol10_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete