Commit Graph

9 Commits

Author SHA1 Message Date
oalbrigt
ed628ff0ce - Fix NVR (CVE-2026-55204, RHEL-211083) 2026-08-10 14:18:35 +02:00
RHEL Packaging Agent
b00f02d75e Fix CVE-2026-55204: NULL pointer dereference in hpack_dht_insert()
Backport upstream fix for CVE-2026-55204 to haproxy 1.8.27.
The patch adds a missing NULL check after the third call to
hpack_dht_defrag() in hpack_dht_insert() (src/hpack-tbl.c),
preventing a NULL pointer dereference (SIGSEGV) when
pool_head_hpack_tbl is exhausted.

CVE: CVE-2026-55204
Upstream patches:
 - 9a6d1fe3f0.patch
Resolves: RHEL-211083

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-07-16 08:16:18 +00:00
Ryan O'Hara
d05c4c5d7f Reject special characters in URI path component
Resolves: RHEL-18168
2024-09-24 12:04:59 -05:00
Adam Samalik
72cfbc575a re-import sources as agreed with the maintainer 2023-07-10 09:21:56 +02:00
Troy Dawson
fedff1d634 Bring gating.yaml over from Brew dist-git
Signed-off-by: Troy Dawson <tdawson@redhat.com>
2023-03-10 10:44:00 -08:00
James Antill
820e90d004 Import rpm: c8s 2023-02-27 13:31:22 -05:00
CentOS Sources
bd09b6bb37 Auto sync2gitlab import of haproxy-1.8.27-5.el8.src.rpm 2022-07-26 16:10:01 +00:00
James Antill
3a10af857e Auto sync2gitlab import of haproxy-1.8.27-4.el8.src.rpm 2022-05-26 09:23:20 -04:00
James Antill
ccb8c3af8b Initial c8s branch. 2022-05-26 09:23:14 -04:00