From: Raspbian automatic forward porter Date: Wed, 15 Feb 2023 01:10:28 +0000 (+0000) Subject: Merge version 2.2.9-2+rpi1+deb11u3 and 2.2.9-2+deb11u4 to produce 2.2.9-2+rpi1+deb11u4 X-Git-Tag: archive/raspbian/2.2.9-2+rpi1+deb11u4^0 X-Git-Url: https://dgit.raspbian.org/?a=commitdiff_plain;h=a8c8ec23f7b3a008b4d3217b2e894c144898906c;p=haproxy.git Merge version 2.2.9-2+rpi1+deb11u3 and 2.2.9-2+deb11u4 to produce 2.2.9-2+rpi1+deb11u4 --- a8c8ec23f7b3a008b4d3217b2e894c144898906c diff --cc debian/changelog index 379c2a0,1b92f8c..cd33ab9 --- a/debian/changelog +++ b/debian/changelog @@@ -1,9 -1,12 +1,19 @@@ - haproxy (2.2.9-2+rpi1+deb11u3) bullseye-staging; urgency=medium ++haproxy (2.2.9-2+rpi1+deb11u4) bullseye-staging; urgency=medium + + [changes brought forward from 1.8.19-1+rpi1 by Peter Michael Green at Thu, 14 Mar 2019 20:25:01 +0000] + * Link with libatomic on armhf too. + - -- Raspbian forward porter Thu, 17 Mar 2022 16:17:51 +0000 ++ -- Raspbian forward porter Wed, 15 Feb 2023 01:10:28 +0000 ++ + haproxy (2.2.9-2+deb11u4) bullseye-security; urgency=high + + * Non-maintainer upload by the Security Team. + * BUG/MEDIUM: mux-h2: Refuse interim responses with end-stream flag set + (CVE-2023-0056) + * BUG/CRITICAL: http: properly reject empty http header field names + (CVE-2023-25725) + + -- Salvatore Bonaccorso Sat, 11 Feb 2023 11:40:49 +0100 haproxy (2.2.9-2+deb11u3) bullseye-security; urgency=high