[ubuntu/impish-proposed] haproxy 2.2.9-2ubuntu1 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Tue Aug 17 18:16:11 UTC 2021
haproxy (2.2.9-2ubuntu1) impish; urgency=medium
* SECURITY UPDATE: Multiple issues in HTTP/2 implementation
- d/p/2.2-0001*.patch: add a new function http_validate_scheme() to
validate a scheme.
- d/p/2.2-0002*.patch: verify early that non-http/https schemes match
the valid syntax.
- d/p/2.2-0003*.patch: verify that :path starts with a / before
concatenating it.
- d/p/2.2-0004*.patch: enforce checks on the method syntax before
translating to HTX.
- d/p/2.2-0005*.patch: give :authority precedence over Host.
- No CVE number
Date: Mon, 16 Aug 2021 07:37:53 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/haproxy/2.2.9-2ubuntu1
-------------- next part --------------
Format: 1.8
Date: Mon, 16 Aug 2021 07:37:53 -0400
Source: haproxy
Built-For-Profiles: noudeb
Architecture: source
Version: 2.2.9-2ubuntu1
Distribution: impish
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
haproxy (2.2.9-2ubuntu1) impish; urgency=medium
.
* SECURITY UPDATE: Multiple issues in HTTP/2 implementation
- d/p/2.2-0001*.patch: add a new function http_validate_scheme() to
validate a scheme.
- d/p/2.2-0002*.patch: verify early that non-http/https schemes match
the valid syntax.
- d/p/2.2-0003*.patch: verify that :path starts with a / before
concatenating it.
- d/p/2.2-0004*.patch: enforce checks on the method syntax before
translating to HTX.
- d/p/2.2-0005*.patch: give :authority precedence over Host.
- No CVE number
Checksums-Sha1:
4c2dab301293e5115b81229eb93a9519d3f75419 2390 haproxy_2.2.9-2ubuntu1.dsc
5fdc40c8ed3501d3d57a3fb2f30666492ca9b09e 77884 haproxy_2.2.9-2ubuntu1.debian.tar.xz
8ae6ff6f642f21648b036e99653f26468d3e9f51 8267 haproxy_2.2.9-2ubuntu1_source.buildinfo
Checksums-Sha256:
eaf8b6175467e39f83e7182af4eba92adbbc131290c7c13fec5d7033c079f94c 2390 haproxy_2.2.9-2ubuntu1.dsc
d26a44937f5cabdc270aa5bce860fce796fb6707602f050f0158d804a983949c 77884 haproxy_2.2.9-2ubuntu1.debian.tar.xz
78302c63516d5083b29376490558399a2183d0992869d8d8915682328bad14d9 8267 haproxy_2.2.9-2ubuntu1_source.buildinfo
Files:
e98319c0cd87fdec7c0620242ee54a80 2390 net optional haproxy_2.2.9-2ubuntu1.dsc
5cb32994ca449f98009be0f155d9fcb9 77884 net optional haproxy_2.2.9-2ubuntu1.debian.tar.xz
69e418400550f9f56c306a87e3822663 8267 net optional haproxy_2.2.9-2ubuntu1_source.buildinfo
Original-Maintainer: Debian HAProxy Maintainers <team+haproxy at tracker.debian.org>
More information about the impish-changes
mailing list