Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 213086 - version bump: net-proxy/haproxy-1.3.14.4
Summary: version bump: net-proxy/haproxy-1.3.14.4
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: New packages (show other bugs)
Hardware: All Linux
: High enhancement (vote)
Assignee: Gentoo Network Proxy Developers (OBSOLETE)
URL:
Whiteboard:
Keywords:
: 214112 (view as bug list)
Depends on:
Blocks:
 
Reported: 2008-03-11 23:13 UTC by Stefan Behte (RETIRED)
Modified: 2008-05-15 23:14 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Stefan Behte (RETIRED) gentoo-dev Security 2008-03-11 23:13:36 UTC
from http://haproxy.1wt.eu :
" March 8th, 2008

      Released haproxy maintenance version 1.3.14.3 to address several minor bugs and clean up the configuration manual a little bit. One annoying issue with backup servers in round robin mode was fixed. Nothing really important was changed in this version, this makes it a good candidate for distro updates."

2008/03/08 : 1.3.14.3
    - [BUG]: Restore clearing t->logs.bytes
    - [DOC] Update a "contrib" file with a hint about a scheme used for formathing subjects
    - [BUG] Don't increment server connections too much + fix retries
    - [BUG] appsession lookup in URL does not work
    - [MINOR] report correct section type for unknown keywords.
    - [BUILD] update MacOS Makefile to build on newer versions
    - [DOC] fix erroneous "useallbackups" option in the doc
    - [DOC] applied small fixes from early readers
    - [BUG] failed conns were sometimes incremented in the frontend!
    - [TESTS] add test-pollers.cfg to easily report pollers in use
    - [BUILD] ensure that makefile understands USE_DLMALLOC=1
    - [CLEANUP] update .gitignore to ignore more temporary files
    - [CLEANUP] report dlmalloc's source path only if explictly specified
    - [BUG] str2sun could leak a small buffer in case of error during parsing
    - [BUG] option allbackups was not working anymore in roundrobin mode

2008/01/21 : 1.3.14.2
    - bug: increment server connections for each connect()
    - bug: fix typo in redispatched connection
    - bug: connect_server: server might not exist when sending error report
    - bug: use backend's source and not server's source with tproxy
    - bug: fix overlapping server flags
    - bug: log response byte count, not request
    - bug: fix truncated responses with sepoll
    - large update to the configuration manual
    - major rework of the GNU Makefile
    - provide inversion for some options
    - add support for "show info" on the unix socket
    - add support for the "backlog" parameter
    - introduce global parameter "tune.maxaccept"
    - introduce "timeout http-request" in frontends
    - tarpit timeout is also allowed in backends
    - code did not build in full debug mode
    - fix configuration hint about timeouts
Comment 1 Jakub Moc (RETIRED) gentoo-dev 2008-03-21 07:16:24 UTC
*** Bug 214112 has been marked as a duplicate of this bug. ***
Comment 2 Alin Năstac (RETIRED) gentoo-dev 2008-04-20 03:01:13 UTC
net-proxy/haproxy-1.3.15 is now in the tree.
Comment 3 Stefan Behte (RETIRED) gentoo-dev Security 2008-04-21 19:08:33 UTC
Thanks.
haproxy<1.3.14.3 should get masked, because of the security bugs.
maybe we should have ~1.3.14.4 and 1.3.15 in the tree (1.3.15 introduces many new features, but might not be "fully stable").
Comment 4 Alin Năstac (RETIRED) gentoo-dev 2008-05-15 22:19:57 UTC
*** Bug 214112 has been marked as a duplicate of this bug. ***
Comment 5 Alin Năstac (RETIRED) gentoo-dev 2008-05-15 22:22:31 UTC
Fine, I replaced version 1.3.14.1 with 1.3.14.4. It won't matter much, since the version 1.3.15 have the exact same ~keywords as this one, but have it your way.

Btw, it would be nice to bug arch maintainers to add stable keywords to the version you currently use.
Comment 6 Stefan Behte (RETIRED) gentoo-dev Security 2008-05-15 23:14:04 UTC
I just thought we shouldn't have a vulnerable version in the tree.
Thanks! :)