Количество 9
Количество 9
CVE-2026-55204
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service.
CVE-2026-55204
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service.
CVE-2026-55204
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service.
CVE-2026-55204
HAProxy - NULL Pointer Dereference in hpack_dht_insert Function
CVE-2026-55204
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null point ...
GHSA-4vj2-5mvx-3vcc
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service.
openSUSE-SU-2026:21245-1
Security update for haproxy
SUSE-SU-2026:2652-1
Security update for haproxy
SUSE-SU-2026:2651-1
Security update for haproxy
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-55204 HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-55204 HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-55204 HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-55204 HAProxy - NULL Pointer Dereference in hpack_dht_insert Function | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
CVE-2026-55204 HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null point ... | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
GHSA-4vj2-5mvx-3vcc HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service. | CVSS3: 7.5 | 0% Низкий | около 2 месяцев назад | |
openSUSE-SU-2026:21245-1 Security update for haproxy | 27 дней назад | |||
SUSE-SU-2026:2652-1 Security update for haproxy | около 1 месяца назад | |||
SUSE-SU-2026:2651-1 Security update for haproxy | около 1 месяца назад |
Уязвимостей на страницу