Envoy security releases [1.29.3, 1.28.2, 1.27.4, 1.26.8] are now available

42 views
Skip to first unread message

ry...@synca.io

unread,
Apr 5, 2024, 9:36:23 AMApr 5
to envoy-secur...@googlegroups.com, envoy-s...@googlegroups.com, envoy-a...@googlegroups.com, envoy-ma...@googlegroups.com, envoy...@googlegroups.com, envo...@googlegroups.com
Hi Envoy community,

We would like to announce the release of the following patch versions:

- 1.29.3
- 1.28.2
- 1.27.4
- 1.26.8

These releases resolve
[CVE-2024-30255](https://github.com/envoyproxy/envoy/security/advisories/GHSA-j654-3ccm-vfmm)

We would also like to disclose that versions 1.29.0 and 1.29.1 were also
vulnerable to the more severe
[CVE-2024-27919](https://github.com/envoyproxy/envoy/security/advisories/GHSA-gghf-vfxp-799r)

You are encouraged to update your versions of Envoy.

Further information about the releases can be found on the Envoy
releases page:

https://github.com/envoyproxy/envoy/releases

cheers,

Ryan Northey (@phlax)

Reply all
Reply to author
Forward
0 new messages