-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Fri, 14 Dec 2018 21:42:07 +0200 Source: haproxy Binary: haproxy haproxy-doc vim-haproxy Architecture: source amd64 all Version: 1.8.15-1~bpo9+1 Distribution: stretch-backports Urgency: high Maintainer: Debian HAProxy Maintainers <haproxy@tracker.debian.org> Changed-By: Apollon Oikonomopoulos <apoikos@debian.org> Description: haproxy - fast and reliable load balancing reverse proxy haproxy-doc - fast and reliable load balancing reverse proxy (HTML documentatio vim-haproxy - syntax highlighting for HAProxy configuration files Closes: 911933 916307 916308 Changes: haproxy (1.8.15-1~bpo9+1) stretch-backports; urgency=medium . * Rebuild for stretch-backports. . haproxy (1.8.15-1) unstable; urgency=high . [ Vincent Bernat ] * d/rules: switch to pcre2. Closes: #911933. . [ Apollon Oikonomopoulos ] * New upstream version 1.8.15 - BUG: dns: Fix off-by-one write in dns_validate_dns_response() ( - BUG: dns: Fix out-of-bounds read via signedness error in dns_validate_dns_response() - BUG: dns: Prevent out-of-bounds read in dns_read_name() - BUG: dns: Prevent out-of-bounds read in dns_validate_dns_response() (CVE-2018-20102, closes: #916308) - BUG: dns: Prevent stack-exhaustion via recursion loop in dns_read_name (CVE-2018-20103, closes: #916307) - BUG/MAJOR: http: http_txn_get_path() may deference an inexisting buffer Checksums-Sha1: c305f9ee32db0a4c96342bc6e412f83cb6dc1da4 2290 haproxy_1.8.15-1~bpo9+1.dsc 40fbba814b9c40d2150caff1f2a9f244cd50c403 66492 haproxy_1.8.15-1~bpo9+1.debian.tar.xz dcf416260175102d3b697f598938625248423d3e 2740932 haproxy-dbgsym_1.8.15-1~bpo9+1_amd64.deb bd39e4a84c7fb2c3fb1aa3e00d34c21ecae6ef3e 528010 haproxy-doc_1.8.15-1~bpo9+1_all.deb 317dd30120a6ce44020156163df330ecd09fe805 8229 haproxy_1.8.15-1~bpo9+1_amd64.buildinfo 4ef3b0dabbbe710d44e65c4fe5701dea31d69ae9 1292580 haproxy_1.8.15-1~bpo9+1_amd64.deb db386bf76981c63360b28f48df6d643a3a3f6f62 175910 vim-haproxy_1.8.15-1~bpo9+1_all.deb Checksums-Sha256: e9cb688d757d6f0cdeae654b97fdd428f3f70bdcf3db4303db8350ecf2886cf6 2290 haproxy_1.8.15-1~bpo9+1.dsc d014c4e9bc74d76d635aa07a9db136ff41564b31b082b700f726faabe355885f 66492 haproxy_1.8.15-1~bpo9+1.debian.tar.xz 2a1c00e4c09dd63a592419539077cbe60d19a492eca601988c7081ad563b0604 2740932 haproxy-dbgsym_1.8.15-1~bpo9+1_amd64.deb b20d35669e6874980ebb6dc5aa5849ddef92530102f1f667958ddaf50a9c1393 528010 haproxy-doc_1.8.15-1~bpo9+1_all.deb 7318b8a1c8ffdeb421a52ae5ad1ca57df983d2ee622b3a403746d2bee7bb1763 8229 haproxy_1.8.15-1~bpo9+1_amd64.buildinfo 9fd2f4ce7a91e71b3b0569198be80904d23af09c04e767ff6061429759ed46e4 1292580 haproxy_1.8.15-1~bpo9+1_amd64.deb 00f5e4b3e9921ea1e58a5e7ebdb8f76a041c8586cd5cbfda31f7349c9dd62f34 175910 vim-haproxy_1.8.15-1~bpo9+1_all.deb Files: e817cbb963e7464687040113e572beb9 2290 net optional haproxy_1.8.15-1~bpo9+1.dsc 6e6174ff70a5099af51dcc77a58bf0a3 66492 net optional haproxy_1.8.15-1~bpo9+1.debian.tar.xz b6daa3d28804b93cdcbd5e3a4cb058b8 2740932 debug extra haproxy-dbgsym_1.8.15-1~bpo9+1_amd64.deb aceb8820dbb745c2293c6bb2a4d82eeb 528010 doc optional haproxy-doc_1.8.15-1~bpo9+1_all.deb f0e39cba396db49b175ea22128b8b03e 8229 net optional haproxy_1.8.15-1~bpo9+1_amd64.buildinfo 7ca62c223b33e133e4fec94736840e27 1292580 net optional haproxy_1.8.15-1~bpo9+1_amd64.deb 486cbc241f1676ea9f9c1af4efd48598 175910 net optional vim-haproxy_1.8.15-1~bpo9+1_all.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEPgL9ZlYpWVIRC6uZ9RsYxyAkgiQFAlwUCGMACgkQ9RsYxyAk giR4nBAAqkevfwomsO9PJAdDaB55iY0ktJ/Kh1bTGFbhAiLnQtg8jvYjd5BTRztx aUJGPSGtseTfLTtvDYku5TOCsJOn5oghyqiYeQVeVXDqTlDOZDlpcg/I9wij6LNZ 7gaxjhJCVZR0SrXpEopXnJS03uvgCHFkF1DnD74+96/xJ81ehb668Gc9oNh1r06z hM0658Cz0yKzw8+8DS79XVWsFr/IzF+qt6/6dYNpEmICTNSR9uJ3QOIHkFVG2BmJ 3jlZpu78kXz7DjOs8Mc0W0zFZ8Ep76LoaNroXI8gKPAxRsOL1E6cOkUixGj3NMfP 7ibNoaUqqEgc0WZPriFu/F9Xbj+1QqikZcvOnvWrN3g5U9/2FNXCln+gZhKlyMMx sKD3pIZne34Nu3ww03IfJcw4xRBZ9UYUTTnq5Oa/HWgX3s+uNmQKRNl1lUk3G6Ch 0Bpo7zEp223V7kGj2WJ9mcxLARO1Xn5IuujwLW+G70a7P5zrigpXA78Ap0DCy7kZ MUx5LlpLK22WkzSBmlMB+OGQb9u4h4GXcgXBHpj4DIbFw/25NIPKMOqfFJhFjHXN +wQL+/giTc6b/LVDVmwi81hfHwBpyxF4byLEfVhtnuz/pntwYy1ANZrcJqHZgJ8I VBxbm1MVHiSx08EuYoh61RoS4xeQrw91iMhFGA5EXjd0oKl08Q4= =NMe2 -----END PGP SIGNATURE-----