v1.29.12

envoyproxy/envoyv1.29.12Dec 18, 2024by publish-envoy[bot]

AI Summary

This patch release addresses a specific crash vulnerability in HTTP/1 overload handling to ensure stable operation.

Key Highlights

  • Fix CVE-2024-53270: HTTP/1 overload crash

Full Release Notes

**Summary of changes**:

- [CVE-2024-53270](https://github.com/envoyproxy/envoy/security/advisories/GHSA-q9qv-8j52-77p3):  HTTP/1: sending overload crashes when the request is reset beforehand

**Docker images**:
    https://hub.docker.com/r/envoyproxy/envoy/tags?page=1&name=v1.29.12
**Docs**:
    https://www.envoyproxy.io/docs/envoy/v1.29.12/
**Release notes**:
    https://www.envoyproxy.io/docs/envoy/v1.29.12/version_history/v1.29/v1.29.12
**Full changelog**:
    https://github.com/envoyproxy/envoy/compare/v1.29.11...v1.29.12

Signed-off-by: Ryan Northey <ryan@synca.io>
Signed-off-by: Boteng Yao <boteng@google.com>