This update for haproxy fixes the following issues
CVE-2026-55203: integer overflow vulnerability in the fcgi_conn structure's drl field that allows buffer misparse as
new FCGI record headers (bsc#1268557).
CVE-2026-55204: null pointer dereference vulnerability in hpack_dht_insert() within src/hpack-tbl.c (bsc#1268558).
Affected Packages
haproxy
SUSE Linux Enterprise High Availability Extension 15 SP4SUSE Linux Enterprise High Availability Extension 15 SP5SUSE Linux Enterprise Micro 5.3SUSE Linux Enterprise Micro 5.4SUSE Linux Enterprise Micro 5.5