Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[1.31] bazel: bump 1315 #387

Merged
merged 4 commits into from
Dec 19, 2024
Merged

[1.31] bazel: bump 1315 #387

merged 4 commits into from
Dec 19, 2024

Conversation

nfuden
Copy link
Collaborator

@nfuden nfuden commented Dec 19, 2024

bump upstream

CVE-2024-53269: Happy Eyeballs: Validate that additional_address are IP addresses instead of crashing when sorting.
CVE-2024-53270: HTTP/1: sending overload crashes when the request is reset beforehand
CVE-2024-53271: HTTP/1.1 multiple issues with envoy.reloadable_features.http1_balsa_delay_reset

@nfuden nfuden changed the title bazel: bump 1315 1.31: bazel: bump 1315 Dec 19, 2024
@solo-changelog-bot
Copy link

Issues linked to changelog:
https://github.com/solo-io/envoy-gloo-ee/issues/868

@nfuden nfuden changed the title 1.31: bazel: bump 1315 [1.31] bazel: bump 1315 Dec 19, 2024
@soloio-bulldozer soloio-bulldozer bot merged commit 14472c4 into release-v1.31 Dec 19, 2024
4 checks passed
@soloio-bulldozer soloio-bulldozer bot deleted the bump/1315-httpcves branch December 19, 2024 15:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants