Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-90264.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-90264
Upstream
Published
2026-06-18T17:16:34Z
Modified
2026-09-01T05:28:09Z
Summary
CVE-2026-55203 affecting package haproxy for versions less than 2.9.11-7
Details

HAProxy through 3.4.0, fixed in commit 5985276, contains an integer overflow vulnerability in the fcgi_conn structure's drl field that allows buffer misparse as new FCGI record headers. When contentLength is 65535 and paddingLength is 1 or more, the drl field wraps to 0, causing incorrect record consumption and allowing malicious FastCGI backends to desynchronize the FCGI framing parser, potentially causing request routing errors, response smuggling, or memory safety issues.

References

Affected packages

Azure Linux:3 / haproxy

Package

Name
haproxy
Purl
pkg:rpm/azure-linux/haproxy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.9.11-7

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-90264.json"