From ef77919ef70f2455f9084d22a585d903290669ed Mon Sep 17 00:00:00 2001 From: Joao Tognolli Jr Date: Fri, 16 May 2025 16:33:47 -0300 Subject: [PATCH] Debian: haproxy: fix CVE-2025-32464 Upgrade haproxy to 2.2.9-2+deb11u7 CVE-2025-32464: https://nvd.nist.gov/vuln/detail/CVE-2025-32464 https://security-tracker.debian.org/tracker/DLA-4135-1 https://www.tenable.com/plugins/nessus/234783 TestPlan: PASS: downloader; build-pkgs PASS: build-image PASS: install on SX-lab (VBox) Closes-Bug: 2109998 Change-Id: Ie7aa9d3a0143897ae2117f46572736d342896d84 Signed-off-by: Joao Tognolli Jr --- base/haproxy/debian/meta_data.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/base/haproxy/debian/meta_data.yaml b/base/haproxy/debian/meta_data.yaml index b94cf25f9..b687d31e7 100644 --- a/base/haproxy/debian/meta_data.yaml +++ b/base/haproxy/debian/meta_data.yaml @@ -1,9 +1,9 @@ --- -debver: 2.2.9-2+deb11u6 +debver: 2.2.9-2+deb11u7 dl_path: - name: haproxy-debian-2.2.9-2+deb11u6.tar.gz - url: https://salsa.debian.org/haproxy-team/haproxy/-/archive/debian/2.2.9-2+deb11u6/haproxy-debian-2.2.9-2+deb11u6.tar.gz - sha256sum: 96f376b8ce24020869ee7beb6212ade9529dfa3b9f58f5bd06fac31020a67b7e + name: haproxy-debian-2.2.9-2+deb11u7.tar.gz + url: https://salsa.debian.org/haproxy-team/haproxy/-/archive/debian/2.2.9-2+deb11u7/haproxy-debian-2.2.9-2+deb11u7.tar.gz + sha256sum: d728fc2cbfff22835b1c56a42205070cd7a4e20b5169e49e05f7fbc90cf10d59 revision: dist: $STX_DIST PKG_GITREVCOUNT: true