[Apollo] Advisories Statistics light light Login

RLSA-2026:55679

Security Mirrored from RHSA-2026:55679
Issued at: 2026-08-18
Updated at: 2026-08-19

Advisory content derived from Red Hat RHSA-2026:55679, © Red Hat, Inc., used under CC BY 4.0, with modifications.

Synopsis

Important: haproxy security update



Description

The haproxy packages provide a reliable, high-performance network load balancer for TCP and HTTP-based applications.

Security Fix(es):

* haproxy: HAProxy: Denial of Service via HPACK dynamic table insertions (CVE-2026-55204)

* haproxy: HAProxy: Response smuggling due to integer overflow in FastCGI record length handling (CVE-2026-55203)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.



Affected products

Rocky Linux 10 aarch64 Rocky Linux 10 ppc64le Rocky Linux 10 riscv64 Rocky Linux 10 s390x Rocky Linux 10 x86_64

Fixes

2490518 2490522

CVEs

CVE-2026-55203 CVE-2026-55204

Affected packages

Rocky Linux 10 x86_64 - AppStream

haproxy-debuginfo-0:3.0.5-6.el10_2.2.x86_64.rpm haproxy-debugsource-0:3.0.5-6.el10_2.2.x86_64.rpm haproxy-0:3.0.5-6.el10_2.2.src.rpm haproxy-0:3.0.5-6.el10_2.2.x86_64.rpm

Rocky Linux 10 ppc64le - AppStream

haproxy-debugsource-0:3.0.5-6.el10_2.2.ppc64le.rpm haproxy-0:3.0.5-6.el10_2.2.src.rpm haproxy-debuginfo-0:3.0.5-6.el10_2.2.ppc64le.rpm haproxy-0:3.0.5-6.el10_2.2.ppc64le.rpm

Rocky Linux 10 aarch64 - AppStream

haproxy-0:3.0.5-6.el10_2.2.src.rpm haproxy-0:3.0.5-6.el10_2.2.aarch64.rpm haproxy-debugsource-0:3.0.5-6.el10_2.2.aarch64.rpm haproxy-debuginfo-0:3.0.5-6.el10_2.2.aarch64.rpm

Rocky Linux 10 riscv64 - AppStream

haproxy-0:3.0.5-6.el10_2.2.src.rpm

Rocky Linux 10 s390x - AppStream

haproxy-0:3.0.5-6.el10_2.2.src.rpm haproxy-0:3.0.5-6.el10_2.2.s390x.rpm haproxy-debuginfo-0:3.0.5-6.el10_2.2.s390x.rpm haproxy-debugsource-0:3.0.5-6.el10_2.2.s390x.rpm