HAProxy官网安全更新(2023-09-22)

情报来源:TSRC

发布时间:2023-09-22

基本信息
  • 发布日期2023-09-22
  • 感知时间2023-09-22
  • 漏洞类型安全更新
  • 风险等级未知
  • 更新版本2.9
  • 情报贡献TSRC
更新标题

普通更新

更新详情

2023/09/22 : 2.9-dev6<br/> - BUG/MINOR: quic: fdtab array underflow access<br/> - DEBUG: pools: always record the caller for uncached allocs as well<br/> - DEBUG: pools: pass the caller pointer to the check functions and macros<br/> - DEBUG: pools: make pool_check_pattern() take a pointer to the pool<br/> - DEBUG: pools: inspect pools on fatal error and dump information found<br/> - BUG/MEDIUM: quic: quic_cc_conn -&gt;cntrs counters unreachable<br/> - DEBUG: pools: also print the item&#39;s pointer when crashing<br/> - DEBUG: pools: also print the value of the tag when it doesn&#39;t match<br/> - DEBUG: pools: print the contents surrounding the expected tag location<br/> - MEDIUM: pools: refine pool size rounding<br/> - BUG/MEDIUM: hlua: don&#39;t pass stale nargs argument to lua_resume()<br/> - BUG/MINOR: hlua/init: coroutine may not resume itself<br/> - BUG/MEDIUM: mux-fcgi: Don&#39;t swap trash and dbuf when handling STDERR records<br/> - BUG/MINOR: promex: fix backend_agg_check_status<br/> - BUG/MEDIUM: master/cli: Pin the master CLI on the first thread of the group 1<br/> - MAJOR: import: update mt_list to support exponential back-off<br/> - CLEANUP: pools: simplify the pool expression when no pool was matched in dump<br/> - MINOR: samples: implement bytes_in and bytes_out samples<br/> - DOC: configuration: add %[req.ver] sample to %HV<br/> - BUG/MINOR: quic: Leak of frames to send.<br/> - DOC: configuration: add %[query] to %HQ<br/> - BUG/MINOR: freq_ctr: fix possible negative rate with the scaled API<br/> - BUG/MAJOR: mux-h2: Report a protocol error for any DATA frame before headers<br/> - BUILD: quic: fix build on centos 8 and USE_QUIC_OPENSSL_COMPAT<br/> - Revert &#34;MAJOR: import: update mt_list to support exponential back-off&#34;<br/> - BUG/MINOR: server: add missing free for server-&gt;rdr_pfx<br/> - REGTESTS: ssl: skip OCSP test w/ WolfSSL<br/> - REGTESTS: ssl: skip generate-certificates test w/ wolfSSL<br/> - MINOR: logs: clarify the check of the log range<br/> - MINOR: log: remove the unused curr_idx in struct smp_log_range<br/> - CLEANUP: logs: rename a confusing local variable &#34;curr_rg&#34; to &#34;smp_rg&#34;<br/> - MINOR: logs: use a single index to store the current range and index<br/> - MEDIUM: logs: atomically check and update the log sample index<br/> - CLEANUP: ring: rename the ring lock &#34;RING_LOCK&#34; instead of &#34;LOGSRV_LOCK&#34;<br/> - BUG/MEDIUM: http-ana: Try to handle response before handling server abort<br/> - MEDIUM: tools/ip: v4tov6() and v6tov4() rework<br/> - MINOR: pattern/ip: offload ip conversion logic to helper functions<br/> - MINOR: pattern: fix pat_{parse,match}_ip() function comments<br/> - MINOR: pattern/ip: simplify pat_match_ip() function<br/> - BUG/MEDIUM: server/cli: don&#39;t delete a dynamic server that has streams<br/> - MINOR: hlua: Add support for the &#34;http-after-res&#34; action<br/> - BUG/MINOR: proto_reverse_connect: fix preconnect with startup name resolution<br/> - MINOR: proto_reverse_connect: prevent transparent server for pre-connect<br/> - CI: cirrus-ci: display gdb bt if any<br/> - MEDIUM: sample: Enhances converter &#34;bytes&#34; to take variable names as arguments<br/> - MEDIUM: sample: Small fix in function check_operator for eror reporting<br/> - MINOR: quic: handle external extra CIDs generator.<br/> - BUG/MINOR: proto_reverse_connect: set default maxconn<br/> - MINOR: proto_reverse_connect: refactor preconnect failure<br/> - MINOR: proto_reverse_connect: remove unneeded wakeup<br/> - MINOR: proto_reverse_connect: emit log for preconnect

软件描述

HAProxy是一个使用C语言编写的自由及开放源代码软件[1],其提供高可用性、负载均衡,以及基于TCP和HTTP的应用程序代理。

CVE编号

暂无

Knowsafe分析

暂无

业界资讯

暂无

来源链接

http://www.haproxy.org/download/2.9/src/CHANGELOG