HAProxy官网安全更新(2023-10-06)

情报来源:TSRC

发布时间:2023-10-06

基本信息
  • 发布日期2023-10-06
  • 感知时间2023-10-06
  • 漏洞类型安全更新
  • 风险等级未知
  • 更新版本2.9
  • 情报贡献TSRC
更新标题

普通更新

更新详情

2023/10/06 : 2.9-dev7<br/> - MINOR: support for http-request set-timeout client<br/> - BUG/MINOR: mux-quic: remove full demux flag on ncbuf release<br/> - CLEANUP: freq_ctr: make all freq_ctr readers take a const<br/> - CLEANUP: stream: make the dump code not depend on the CLI appctx<br/> - MINOR: stream: split stats_dump_full_strm_to_buffer() in two<br/> - CLEANUP: stream: use const filters in the dump function<br/> - CLEANUP: stream: make strm_dump_to_buffer() take a const stream<br/> - MINOR: stream: make strm_dump_to_buffer() take an arbitrary buffer<br/> - MINOR: stream: make strm_dump_to_buffer() show the list of filters<br/> - MINOR: stream: make stream_dump() always multi-line<br/> - MINOR: streams: add support for line prefixes to strm_dump_to_buffer()<br/> - MEDIUM: stream: now provide full stream dumps in case of loops<br/> - MINOR: debug: use the more detailed stream dump in panics<br/> - CLEANUP: stream: remove the now unused stream_dump() function<br/> - Revert &#34;BUG/MEDIUM: quic: missing check of dcid for init pkt including a token&#34;<br/> - MINOR: stream: fix output alignment of stuck thread dumps<br/> - BUG/MINOR: proto_reverse_connect: fix FD leak on connection error<br/> - BUG/MINOR: tcp_act: fix attach-srv rule ACL parsing<br/> - MINOR: connection: define error for reverse connect<br/> - MINOR: connection: define mux flag for reverse support<br/> - MINOR: tcp_act: remove limitation on protocol for attach-srv<br/> - BUG/MINOR: proto_reverse_connect: fix FD leak upon connect<br/> - BUG/MAJOR: plock: fix major bug in pl_take_w() introduced with EBO<br/> - Revert &#34;MEDIUM: sample: Small fix in function check_operator for eror reporting&#34;<br/> - DOC: sample: Add a comment in &#39;check_operator&#39; to explain why &#39;vars_check_arg&#39; should ignore the &#39;err&#39; buffer<br/> - DEV: sslkeylogger: handle file opening error<br/> - MINOR: quic: define quic-socket bind setting<br/> - MINOR: quic: handle perm error on bind during runtime<br/> - MINOR: backend: refactor specific source address allocation<br/> - MINOR: proto_reverse_connect: support source address setting<br/> - BUILD: pool: Fix GCC error about potential null pointer dereference<br/> - MINOR: hlua: Set context&#39;s appctx when the lua socket is created<br/> - MINOR: hlua: Don&#39;t preform operations on a not connected socket<br/> - MINOR: hlua: Save the lua socket&#39;s timeout in its context<br/> - MINOR: hlua: Save the lua socket&#39;s server in its context<br/> - MINOR: hlua: Test the hlua struct first when the lua socket is connecting<br/> - BUG/MEDIUM: hlua: Initialize appctx used by a lua socket on connect only<br/> - DEBUG: mux-h1: Fix event label from trace messages about payload formatting<br/> - BUG/MINOR: mux-h1: Handle read0 in rcv_pipe() only when data receipt was tried<br/> - BUG/MINOR: mux-h1: Ignore C-L when sending H1 messages if T-E is also set<br/> - BUG/MEDIUM: h1: Ignore C-L value in the H1 parser if T-E is also set<br/> - REGTESTS: filters: Don&#39;t set C-L header in the successful response to CONNECT<br/> - MINOR: mux-h1: Add flags if outgoing msg contains a header about its payload<br/> - MINOR: mux-h1: Rely on H1S_F_HAVE_CHNK to add T-E in outgoing messages<br/> - BUG/MEDIUM: mux-h1: Add C-L header in outgoing message if it was removed<br/> - BUG/MEDIUM: mux-h1; Ignore headers modifications about payload representation<br/> - BUG/MINOR: h1-htx: Keep flags about C-L/T-E during HEAD response parsing<br/> - MINOR: h1-htx: Declare successful tunnel establishment as bodyless<br/> - BUILD: quic: allow USE_QUIC to work with AWSLC<br/> - CI: github: add USE_QUIC=1 to aws-lc build<br/> - BUG/MINOR: hq-interop: simplify parser requirement<br/> - MEDIUM: cache: Add &#34;Origin&#34; header to secondary cache key<br/> - MINOR: haproxy: permit to register features during boot<br/> - MINOR: tcp_rules: tcp-{request,response} requires TCP or HTTP mode<br/> - MINOR: stktable: &#34;stick&#34; requires TCP or HTTP mode<br/> - MINOR: filter: &#34;filter&#34; requires TCP or HTTP mode<br/> - MINOR: backend/balance: &#34;balance&#34; requires TCP or HTTP mode<br/> - MINOR: flt_http_comp: &#34;compression&#34; requires TCP or HTTP mode<br/> - MINOR: http_htx/errors: prevent the use of some keywords when not in tcp/http mode<br/> - MINOR: fcgi-app: &#34;use-fcgi-app&#34; requires TCP or HTTP mode<br/> - MINOR: cfgparse-listen: &#34;http-send-name-header&#34; requires TCP or HTTP mode<br/> - MINOR: cfgparse-listen: &#34;dynamic-cookie-key&#34; requires TCP or HTTP mode<br/> - MINOR: proxy: dynamic-cookie CLIs require TCP or HTTP mode<br/> - MINOR: cfgparse-listen: &#34;http-reuse&#34; requires TCP or HTTP mode<br/> - MINOR: proxy: report a warning for max_ka_queue in proxy_cfg_ensure_no_http()<br/> - MINOR: cfgparse-listen: warn when use-server rules is used in wrong mode<br/> - DOC: config: unify &#34;log&#34; directive doc<br/> - MINOR: sink/log: fix some typos around postparsing logic<br/> - MINOR: sink: remove useless check after sink creation<br/> - MINOR: sink: don&#39;t rely on p-&gt;parent in sink appctx<br/> - MINOR: sink: don&#39;t rely on forward_px to init sink forwarding<br/> - MINOR: sink: refine forward_px usage<br/> - MINOR: sink: function to add new sink servers<br/> - BUG/MEDIUM: stconn: Fix comparison sign in sc_need_room()<br/> - BUG/MEDIUM: actions: always apply a longest match on prefix lookup

软件描述

HAProxy是一个使用C语言编写的自由及开放源代码软件[1],其提供高可用性、负载均衡,以及基于TCP和HTTP的应用程序代理。

CVE编号

暂无

Knowsafe分析

暂无

业界资讯

暂无

来源链接

http://www.haproxy.org/download/2.9/src/CHANGELOG