En

HAProxy官网安全更新(2016-03-14)

来源:HAProxy官网 发布日期:2016-03-14 阅读次数:212 评论:0

基本信息

发布日期:2016-03-14(官方当地时间)

更新类型:安全更新

更新版本:1.4

感知时间:2020-06-05 14:51:55

风险等级:未知

情报贡献:TSRC

更新标题

普通更新

更新详情

2016/03/14 : 1.4.27
- DOC: Fix L4TOUT typo in documentation
- BUG/MEDIUM: http: remove content-length from chunked messages
- DOC: http: update the comments about the rules for determining transfer-length
- BUG/MEDIUM: http: do not restrict parsing of transfer-encoding to HTTP/1.1
- BUG/MEDIUM: http: incorrect transfer-coding in the request is a bad request
- BUG/MEDIUM: http: remove content-length form responses with bad transfer-encoding
- MEDIUM: http: restrict the HTTP version token to 1 digit as per RFC7230
- BUG/MINOR: cfgparse: fix typo in 'option httplog' error message
- DOC: usesrc root privileges requirements
- DOC: typo in 'redirect', 302 code meaning
- BUG/MINOR: http: remove stupid HTTP_METH_NONE entry
- BUG/MAJOR: http: don't call http_send_name_header() after an error
- CLEANUP: config: make the errorloc/errorfile messages less confusing
- BUG/MINOR: config: check that tune.bufsize is always positive
- BUG/MINOR: http: Add OPTIONS in supported http methods (found by find_http_meth)
- DOC: Address issue where documentation is excluded due to a gitignore rule.
- CLEANUP: .gitignore: ignore more test files
- CLEANUP: .gitignore: finally ignore everything but what is known.
- CLEANUP: don't ignore debian/ directory if present
- FIX: small typo in an example using the "Referer" header
- BUG/MEDIUM: config: count memory limits on 64 bits, not 32
- BUG/MINOR: acl: don't use record layer in req_ssl_ver
- BUG/MEDIUM: http: switch the request channel to no-delay once done.
- BUILD: freebsd: double declaration
- BUG/MINOR: chunk: make chunk_dup() always check and set dst->size
- BUG/MEDIUM: config: Adding validation to stick-table expire value.
- DOC: add server name at rate-limit sessions example
- MINOR: cfgparse: warn when uid parameter is not a number
- MINOR: cfgparse: warn when gid parameter is not a number

软件描述

HAProxy是一个使用C语言编写的自由及开放源代码软件[1],其提供高可用性、负载均衡,以及基于TCP和HTTP的应用程序代理。

CVE编号

TSRC分析

暂无

业界资讯

暂无

评论

提交评论 您输入的评论有误,请重新输入