Unrated severityNVD Advisory· Published Jun 18, 2026· Updated Jun 18, 2026
HAProxy - NULL Pointer Dereference in hpack_dht_insert Function
CVE-2026-55204
Description
HAProxy through 3.4.0, fixed in commit 9a6d1fe, contains a null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c that fails to validate the return value of hpack_dht_defrag() when the memory pool is exhausted. An attacker can trigger HPACK dynamic table insertions under memory pressure to dereference a NULL pointer and crash HAProxy worker processes, causing denial of service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11- osv-coords10 versionspkg:apk/chainguard/haproxy-2.4pkg:apk/chainguard/haproxy-2.6pkg:apk/chainguard/haproxy-2.8pkg:apk/chainguard/haproxy-3.0pkg:apk/chainguard/haproxy-3.2pkg:apk/chainguard/haproxy-3.3pkg:apk/wolfi/haproxy-3.2pkg:apk/wolfi/haproxy-3.3pkg:bitnami/haproxypkg:rpm/opensuse/haproxy&distro=openSUSE%20Tumbleweed
< 2.4.36-r0+ 9 more
- (no CPE)range: < 2.4.36-r0
- (no CPE)range: < 2.6.31-r0
- (no CPE)range: < 2.8.26-r0
- (no CPE)range: < 3.0.24-r0
- (no CPE)range: < 3.2.20-r0
- (no CPE)range: < 3.3.11-r0
- (no CPE)range: < 3.2.20-r0
- (no CPE)range: < 3.3.11-r0
- (no CPE)range: < 3.4.1
- (no CPE)range: < 3.4.0+git31.fc300e9f2-1.1
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.