[CLSA-2026:1788773292] Fix CVE(s): CVE-2026-55204
Type:
security
Severity:
Important
Release date:
2026-09-07 09:48:42 UTC
Description:
* SECURITY UPDATE: NULL pointer dereference in HPACK dynamic table insertion - debian/patches/CVE-2026-55204.patch: add missing NULL check after hpack_dht_defrag() in hpack_dht_insert() in src/hpack-tbl.c - CVE-2026-55204
CVEs fixed:
Updated packages:
  • haproxy_2.2.9-2+deb11u7+tuxcare.els1_amd64.deb
    sha:925d4bf9d6c804d1d08c47dcd57859942dfd1e91
  • haproxy-doc_2.2.9-2+deb11u7+tuxcare.els1_all.deb
    sha:2256812e985b3721df4088e1f3d42cb983f7e66d
  • vim-haproxy_2.2.9-2+deb11u7+tuxcare.els1_all.deb
    sha:3d7c90496cfa9b3b38602915f844beb02751bed8
  • haproxy_2.2.9-2+deb11u7+tuxcare.els1_arm64.deb
    sha:f34113a8528f8e43c06cf4ba4d7c5844290dd4e2
  • haproxy_2.2.9-2+deb11u7+tuxcare.els1_armel.deb
    sha:c66de6c46caaff723f51a6211b65aff4a53cd817
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.