Public bug reported: Scheduled-For: ubuntu-25.11 Ubuntu: 3.0.10-1ubuntu2 Debian Unstable: 3.2.5-1
A new release of haproxy is available for merging from Debian Unstable. If it turns out this needs a sync rather than a merge, please change the tagging from ['needs-merge', 'upgrade-software-version'] to ['needs- sync', 'upgrade-software-version'], and (optionally) update the title as desired. If this merge pulls in a new upstream version, also consider adding an entry to the r-series Release Notes: https://discourse.ubuntu.com/c/project/release/38 ### New Debian Changes ### haproxy (3.2.5-1) unstable; urgency=medium * New upstream release. * Upload to unstable. * d/watch: update to version 5. -- Vincent Bernat <[email protected]> Fri, 26 Sep 2025 21:34:05 +0200 haproxy (3.2.4-1) experimental; urgency=medium * d/rules: build again without USE_QUIC_OPENSSL_COMPAT and require libssl (>= 3.5.1). -- Vincent Bernat <[email protected]> Thu, 14 Aug 2025 07:07:28 +0200 haproxy (3.2.3-2) experimental; urgency=medium * d/rules: build with USE_QUIC_OPENSSL_COMPAT until libssl (>= 3.5.1) is available in Trixie. -- Vincent Bernat <[email protected]> Fri, 11 Jul 2025 21:56:54 +0200 haproxy (3.2.3-1) experimental; urgency=medium [ Yaacov Akiba Slama ] * d/rules: do not build with USE_QUIC_OPENSSL_COMPAT. * d/control: Build-Depends on libssl (>= 3.5.0). [ Vincent Bernat ] * New upstream release. -- Vincent Bernat <[email protected]> Sun, 15 Jun 2025 10:33:43 +0200 haproxy (3.2.1-1) experimental; urgency=medium * New upstream release. * d/control: build-depends on libcrypt-dev. Closes: #1107033. -- Vincent Bernat <[email protected]> Sat, 14 Jun 2025 08:31:04 +0200 haproxy (3.2.0-1) experimental; urgency=medium * New upstream release. * d/copyright: update FSF address. -- Vincent Bernat <[email protected]> Thu, 29 May 2025 10:26:20 +0200 haproxy (3.1.7-1) experimental; urgency=medium * New upstream release. Fix CVE-2025-32464. -- Vincent Bernat <[email protected]> Sat, 19 Apr 2025 17:41:25 +0200 haproxy (3.1.6-1) experimental; urgency=medium * New upstream release. * d/control: drop Pre-Depends on dpkg. Closes: #1100452. -- Vincent Bernat <[email protected]> Sat, 22 Mar 2025 17:01:14 +0100 haproxy (3.1.5-1) experimental; urgency=medium * New upstream release. -- Vincent Bernat <[email protected]> Fri, 21 Feb 2025 14:57:21 +0100 haproxy (3.1.3-1) experimental; urgency=medium * New upstream release. -- Vincent Bernat <[email protected]> Wed, 29 Jan 2025 21:26:23 +0100 haproxy (3.1.2-1) experimental; urgency=medium * New upstream release. -- Vincent Bernat <[email protected]> Sun, 12 Jan 2025 15:55:49 +0100 haproxy (3.1.1-1) experimental; urgency=medium * New upstream release. -- Vincent Bernat <[email protected]> Sat, 14 Dec 2024 21:21:15 +0100 haproxy (3.1.0-2) experimental; urgency=medium [ Helmut Grohne ] * Fix FTCBFS: (Closes: #1079532) + Require a sphinx for the build architecture. + Pass CC and PKG_CONFIG to all make targets. + cross.patch: Honour the passed ${PKG_CONFIG}. -- Vincent Bernat <[email protected]> Sun, 01 Dec 2024 18:08:58 +0100 haproxy (3.1.0-1) experimental; urgency=medium * New upstream release. -- Vincent Bernat <[email protected]> Sat, 30 Nov 2024 23:34:36 +0100 haproxy (3.0.11-1) unstable; urgency=medium * New upstream release. * d/control: build-depends on libcrypt-dev. Closes: #1107033. -- Vincent Bernat <[email protected]> Tue, 03 Jun 2025 07:51:31 +0200 ### Old Ubuntu Delta ### haproxy (3.0.10-1ubuntu2) questing; urgency=medium * Rebuild to include updated RISC-V base ISA RVA23 -- Heinrich Schuchardt <[email protected]> Fri, 05 Sep 2025 11:46:44 +0000 haproxy (3.0.10-1ubuntu1) questing; urgency=medium * Merge with Debian unstable (LP: #2110439). Remaining changes: - d/{control,rules}: Remove support for OpenTracing due to it being in universe * Dropped changes: - d/{control,rules}: do not link against jemalloc (universe) This can be dropped after (LP #2088056) got accepted. [ jemalloc is now in main ] - SECURITY UPDATE: heap overflow in sample_conv_regsub + debian/patches/CVE-2025-32464.patch: fix risk of overflow when replacing multiple regex back-refs in src/sample.c. + CVE-2025-32464 [ Fixed in 3.0.10 ] -- Athos Ribeiro <[email protected]> Tue, 20 May 2025 12:27:08 -0300 ** Affects: haproxy (Ubuntu) Importance: Undecided Status: New ** Tags: needs-merge upgrade-software-version -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2125994 Title: Merge haproxy from Debian Unstable for r-series To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/haproxy/+bug/2125994/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
