UbuntuUpdates.org

Package "haproxy"

Name: haproxy

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • fast and reliable load balancing reverse proxy (HTML documentation)
  • syntax highlighting for HAProxy configuration files

Latest version: 3.0.8-1ubuntu1.2
Release: plucky (25.04)
Level: security
Repository: universe

Links



Other versions of "haproxy" in Plucky

Repository Area Version
base main 3.0.8-1ubuntu1
base universe 3.0.8-1ubuntu1
security main 3.0.8-1ubuntu1.2
updates main 3.0.8-1ubuntu1.2
updates universe 3.0.8-1ubuntu1.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.0.8-1ubuntu1.2 2025-10-06 19:07:55 UTC

  haproxy (3.0.8-1ubuntu1.2) plucky-security; urgency=medium

  * SECURITY UPDATE: DoS via MJSON
    - debian/patches/CVE-2025-11230.patch: fix possible DoS when parsing
      numbers in src/mjson.c.
    - CVE-2025-11230

 -- Marc Deslauriers <email address hidden> Wed, 01 Oct 2025 12:58:21 -0400

Source diff to previous version
CVE-2025-11230 BUG/CRITICAL: mjson: fix possible DoS when parsing numbers

Version: 3.0.8-1ubuntu1.1 2025-04-23 13:07:08 UTC

  haproxy (3.0.8-1ubuntu1.1) plucky-security; urgency=medium

  * SECURITY UPDATE: heap overflow in sample_conv_regsub
    - debian/patches/CVE-2025-32464.patch: fix risk of overflow when
      replacing multiple regex back-refs in src/sample.c.
    - CVE-2025-32464

 -- Marc Deslauriers <email address hidden> Wed, 09 Apr 2025 08:46:16 -0400

CVE-2025-32464 HAProxy 2.2 through 3.1.6, in certain uncommon configurations, has a sample_conv_regsub heap-based buffer overflow because of mishandling of the repl



About   -   Send Feedback to @ubuntu_updates