Advisories ยป MGAA-2024-0124

Updated haproxy package fixes some bugs

Publication date: 10 Apr 2024
Modification date: 10 Apr 2024
Type: bugfix
Affected Mageia releases : 9

Description

Haproxy has a major, few medium and few minor bugs fixed in last upstream
version 2.8.9 of branch 2.8

Fixed major bug list:
- hlua: improper lock usage with hlua_ctx_resume()
- promex: fix crash on deleted server
- server: fix stream crash due to deleted server
- ssl/ocsp: crash with ocsp when old process exit or using ocsp CLI

Fixed medium bug list:
- applet: Immediately free appctx on early error
- cli: Warn if pipelined commands are delimited by a \n
- hlua: Be able to garbage collect uninitialized lua sockets
- hlua: Don't loop if a lua socket does not consume received data
- hlua: improper lock usage with SET_SAFE_LJMP()
- hlua: streams don't support mixing lua-load with lua-load-per-thread (2nd try)
- mux-fcgi: Properly handle EOM flag on end-of-trailers HTX block
- mux-h2: allow to set the glitches threshold to kill a connection
- quic: fix transient send error with listener socket
- spoe: Don't rely on stream's expiration to detect processing timeout
- spoe: Return an invalid frame on recv if size is too small
- ssl: Fix crash in ocsp-update log function
                

References

SRPMS

9/core