HAProxy known bugs for version v2.1.3 (maintenance branch 2.1)

This version (2.1.3) is a release belonging to maintenance branch 2.1 whose latest version is 2.1.5. If your version is not the last one in the maintenance branch, you are missing fixes for known bugs, and by not updating you are needlessly taking the responsibility for the risk of unexpected service outages and exposing your web site to possible security issues.

The HAProxy development team takes a great care of maintaining stable versions so that all users can apply bug fixes without having to take the risk of upgrading to a new branch. In turn users are expected to apply the fixes when the development team estimates that they were worth being backported to stable branches.

2020-05-292.1.5 ⇐ last
2020-02-122.1.3 ⇐ yours

Known bugs affecting this version, and already fixed in the maintenance branch

These fixes have already been queued for a more recent 2.1 version. Some of them might have already been released in a more recent version than yours, and other ones might still be pending in the maintenance branch for a future release. The list may be empty if you're already on the latest version and no new fix was backported.

Bugs are almost always tagged with a severity (some people forget the severity tag when the bug is minor). The following severities are used :

Total known bugs in this version by category :

107 1 4 35 67

Click on the subjects below to get the full description of the bug :

Merge dateSubject - Severity (minor, medium, major, critical)
2020-06-02Revert "BUG/MEDIUM: connections: force connections cleanup on server changes"
2020-05-28BUG/MINOR: nameservers: fix error handling in parsing of resolv.conf
2020-05-28BUG/MINOR: lua: Add missing string length for lua sticktable lookup
2020-05-28BUG/MEDIUM: logs: fix trailing zeros on log message.
2020-05-28BUG/MINOR: logs: prevent double line returns in some events.
2020-05-25BUG/MINOR: server: Fix server_finalize_init() to avoid unused variable
2020-05-20BUG/MINOR: checks: Respect check-ssl param when a port or an addr is specified
2020-05-20BUG/MEDIUM: ring: write-lock the ring while attaching/detaching
2020-05-20BUG/MAJOR: mux-fcgi: Stop sending loop if FCGI stream is blocked for any reason
2020-05-20BUG/MINOR: cache: Don't needlessly test "cache" keyword in parse_cache_flt()
2020-05-20BUG/MEDIUM: stream: Only allow L7 retries when using HTTP.
2020-05-20BUG/MEDIUM: streams: Remove SF_ADDR_SET if we're retrying due to L7 retry.
2020-05-20BUG/MINOR: soft-stop: always wake up waiting threads on stopping
2020-05-20BUG/MINOR: pollers: remove uneeded free in global init
2020-05-20BUG/MINOR: pools: use %u not %d to report pool stats in "show pools"
2020-05-20BUG/MINOR: cfgparse: Abort parsing the current line if an invalid \x sequence is encountered
2020-05-20BUG/MEDIUM: http_ana: make the detection of NTLM variants safer
2020-05-20BUG/MINOR: http-ana: fix NTLM response parsing again
2020-05-20BUG/MINOR: config: Make use_backend and use-server post-parsing less obscur
2020-05-20BUG/MEDIUM: lua: Fix dumping of stick table entries for STD_T_DICT
2020-05-20BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_UPDATE_{MIN,MAX}()
2020-05-20BUG/MINOR: threads: fix multiple use of argument inside HA_ATOMIC_CAS()
2020-05-20BUG/MINOR: sample: Set the correct type when a binary is converted to a string
2020-05-20BUG/MEDIUM: ssl: fix the id length check within smp_fetch_ssl_fc_session_id()
2020-05-20BUG/MEDIUM: h1: Don't compare host and authority if only h1 headers are parsed
2020-05-20BUG/MEDIUM: connections: force connections cleanup on server changes
2020-05-20BUG/MEDIUM: mux-fcgi: Fix wrong test on FCGI_CF_KEEP_CONN in fcgi_detach()
2020-05-20BUG/MEDIUM: mux_fcgi: Free the FCGI connection at the end of fcgi_release()
2020-05-20BUG/MINOR: checks: Remove a warning about http health checks
2020-05-20BUG/MINOR: checks: Compute the right HTTP request length for HTTP health checks
2020-05-08BUG/MINOR: checks/server: use_ssl member must be signed
2020-05-07Revert "BUG/MINOR: connection: make sure to correctly tag local PROXY connections"
2020-05-07Revert "BUG/MINOR: connection: always send address-less LOCAL PROXY connections"
2020-05-01BUG/MEDIUM: shctx: bound the number of loops that can happen around the lock
2020-05-01BUG/MEDIUM: shctx: really check the lock's value while waiting
2020-05-01BUG/MINOR: debug: properly use long long instead of long for the thread ID
2020-05-01BUG/MEDIUM: listener: mark the thread as not stuck inside the loop
2020-05-01BUG/MEDIUM: sample: make the CPU and latency sample fetches check for a stream
2020-05-01BUG/MEDIUM: http: the "unique-id" sample fetch could crash without a steeam
2020-05-01BUG/MEDIUM: http: the "http_first_req" sample fetch could crash without a steeam
2020-05-01BUG/MEDIUM: capture: capture.{req,res}.* crash without a stream
2020-05-01BUG/MEDIUM: capture: capture-req/capture-res converters crash without a stream
2020-05-01BUG/MINOR: mux-fcgi: Be sure to have a connection as session's origin to use it
2020-05-01BUG/MINOR: obj_type: Handle stream object in obj_base_ptr() function
2020-05-01BUG/MINOR: checks: chained expect will not properly wait for enough data
2020-05-01BUG/MEDIUM: server/checks: Init server check during config validity check
2020-05-01BUG/MINOR: checks: Respect the no-check-ssl option
2020-05-01BUG/MINOR: check: Update server address and port to execute an external check
2020-05-01BUG/MINOR: http: make url_decode() optionally convert '+' to SP
2020-05-01BUG/MINOR: tools: fix the i386 version of the div64_32 function
2020-05-01BUG/MEDIUM: http-ana: Handle NTLM messages correctly.
2020-05-01BUG/MINOR: ssl: default settings for ssl server options are not used
2020-05-01BUG/MINOR: peers: Incomplete peers sections should be validated.
2020-04-14BUG/MINOR: connection: always send address-less LOCAL PROXY connections
2020-04-09BUG/MINOR: ssl: memleak of the struct cert_key_and_chain
2020-04-08BUG/MINOR: ssl/cli: memory leak in 'set ssl cert'
2020-04-02BUG/MINOR: protocol_buffer: Wrong maximum shifting.
2020-04-02BUG/CRITICAL: hpack: never index a header into the headroom after wrapping
2020-04-01BUG/MINOR: http-ana: Reset request analysers on error when waiting for response
2020-03-31BUG/MINOR: http_ana: make sure redirect flags don't have overlapping bits
2020-03-31BUG/MINOR: stats: Fix color of draining servers on stats page
2020-03-31BUG/MINOR: peers: Use after free of "peers" section.
2020-03-31BUG/MINOR: peers: avoid an infinite loop with peers_fe is NULL
2020-03-31BUG/MINOR: peers: init bind_proc to 1 if it wasn't initialized
2020-03-31BUG/MINOR: haproxy/threads: close a possible race in soft-stop detection
2020-03-31BUG/MINOR: connections: Make sure we free the connection on failure.
2020-03-31BUG/MEDIUM: wdt: Don't ignore WDTSIG and DEBUGSIG in __signal_process_queue().
2020-03-31MINOR: wdt: Move the definitions of WDTSIG and DEBUGSIG into types/signal.h.
2020-03-31BUG/MEDIUM: peers: resync ended with RESYNC_PARTIAL in wrong cases.
2020-03-31BUG/MINOR: haproxy/threads: try to make all threads leave together
2020-03-31BUG/MINOR: listener/mq: do not dispatch connections to remote threads when stopping
2020-03-31BUG/MINOR: haproxy: always initialize sleeping_thread_mask
2020-03-31BUG/MEDIUM: pools: Always update free_list in pool_gc().
2020-03-31BUG/MEDIUM: random: align the state on 2*64 bits for ARM64
2020-03-31BUG/MEDIUM: mt_lists: Make sure we set the deleted element to NULL;
2020-03-31BUG/MINOR: rules: Increment be_counters if backend is assigned for a silent-drop
2020-03-31BUG/MINOR: rules: Preserve FLT_END analyzers on silent-drop action
2020-03-31BUG/MINOR: http-rules: Fix a typo in the reject action function
2020-03-31BUG/MINOR: http-rules: Preserve FLT_END analyzers on reject action
2020-03-31BUG/MINOR: lua: Ignore the reserve to know if a channel is full or not
2020-03-31BUG/MINOR: http-ana: Reset request analysers on a response side error
2020-03-31BUG/MEDIUM: compression/filters: Fix loop on HTX blocks compressing the payload
2020-03-31BUG/MEDIUM: cache/filters: Fix loop on HTX blocks caching the response payload
2020-03-31BUG/MINOR: filters: Forward everything if no data filters are called
2020-03-31BUG/MINOR: filters: Use filter offset to decude the amount of forwarded data
2020-03-31BUG/MAJOR: proxy_protocol: Properly validate TLV lengths
2020-03-31BUG/MINOR: init: make the automatic maxconn consider the max of soft/hard limits
2020-03-31BUG/MINOR: pattern: Do not pass len = 0 to calloc()
2020-03-31BUG/MINOR: wdt: do not return an error when the watchdog couldn't be enabled
2020-03-31BUG/MEDIUM: debug: make the debug_handler check for the thread in threads_to_dump
2020-03-11BUG/MAJOR: list: fix invalid element address calculation
2020-03-11BUG/MINOR: checks/threads: use ha_random() and not rand()
2020-03-11BUG/MEDIUM: random: implement a thread-safe and process-safe PRNG
2020-03-11BUG/MEDIUM: random: initialize the random pool a bit better
2020-02-28BUG/MINOR: http-htx: Do case-insensive comparisons on Host header name
2020-02-28BUG/MINOR: dns: ignore trailing dot
2020-02-28BUG/MINOR: sample: Make sure to return stable IDs in the unique-id fetch
2020-02-28BUG/MINOR: h2: reject again empty :path pseudo-headers
2020-02-28BUG/MINOR: connection: make sure to correctly tag local PROXY connections
2020-02-28BUG/MEDIUM: ssl: fix several bad pointer aliases in a few sample fetch functions
2020-02-28BUG/MINOR: sample: fix the json converter's endian-sensitivity
2020-02-28BUG/MEDIUM: ebtree: don't set attribute packed without unaligned access support
2020-02-28BUG/MEDIUM: shctx: make sure to keep all blocks aligned
2020-02-28BUG/MINOR: http: http-request replace-path duplicates the query string
2020-02-21BUG/MAJOR: http-ana: Always abort the request when a tarpit is triggered
2020-02-21BUG/MINOR: http-ana: Matching on monitor-uri should be case-sensitive
2020-02-21BUG/MINOR: http-htx: Don't return error if authority is updated without changes
2020-02-21BUG/MINOR: filters: Count HTTP headers as filtered data but don't forward them
2020-02-21BUG/MINOR: mux-fcgi: Forbid special characters when matching PATH_INFO param
2020-02-21BUG/MEDIUM: muxes: Use the right argument when calling the destroy method.
2020-02-21BUG/MINOR: namespace: avoid closing fd when socket failed in my_socketat

