Groups keyboard shortcuts have been updated
Dismiss
See shortcuts

Envoy security releases [1.33.1, 1.32.4, 1.31.6, 1.30.10] are available today

21 views
Skip to first unread message

Boteng Yao

unread,
Mar 20, 2025, 12:54:54 PMMar 20
to envoy-secur...@googlegroups.com, envoy-security, envoy-ma...@googlegroups.com, envoy-a...@googlegroups.com, envoy...@googlegroups.com, envo...@googlegroups.com
Hi Envoy Community,

[CVE-2025-30157] (https://github.com/envoyproxy/envoy/security/advisories/GHSA-cf3q-gqg7-3fm9): Envoy crashes when HTTP ext_proc processes local replies
  Affected branches: >= 1.30

These issues will be resolved in the following releases:

- v1.33.1
- v1.32.4
- v1.31.6
- v1.30.10

The releases will be published to our releases page as they become available today:

     https://github.com/envoyproxy/envoy/releases

You are encouraged to update your versions of Envoy, and documentation for all versions can be found at https://www.envoyproxy.io/docs.

A PR to resolve these issues on the `main` branch has been raised here:

Main PR here: https://github.com/envoyproxy/envoy/pull/38818

Thanks,

Ryan Northey (@phlax)
Boteng Yao (@botengyao)

on behalf of the Envoy security team

Reply all
Reply to author
Forward
0 new messages