Skip to content

Update dependency erlang/otp to v27.3.4.16 (main) - #156

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/main-erlang-otp-27.x
Open

Update dependency erlang/otp to v27.3.4.16 (main)#156
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/main-erlang-otp-27.x

Conversation

@renovate

@renovate renovate Bot commented Aug 16, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Update Change Pending
erlang/otp patch 27.3.4.1527.3.4.16 27.3.4.17

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

erlang/otp (erlang/otp)

v27.3.4.16: OTP 27.3.4.16

Compare Source

Patch Package:           OTP 27.3.4.16
Git Tag:                 OTP-27.3.4.16
Date:                    2026-08-04
Trouble Report Id:       OTP-20137, OTP-20275
Seq num:                 GH-11402, PR-11110, PR-11409
System:                  OTP
Release:                 27
Application:             erts-15.2.7.12, ssh-5.2.11.11
Predecessor:             OTP 27.3.4.15

Check out the git tag OTP-27.3.4.16, and build a full OTP system including documentation. Apply one or more applications from this build as patches to your installation using the 'otp_patch_apply' tool. For information on install requirements, see descriptions for each application version below.

erts-15.2.7.12

The erts-15.2.7.12 application can be applied independently of other applications on a full OTP 27 installation.

Fixed Bugs and Malfunctions

  • Fixed a regression in the previous patch release that prevented epmd from binding to localhost.

    Own Id: OTP-20275
    Related Id(s): GH-11402, PR-11409

Full runtime dependencies of erts-15.2.7.12

kernel-9.0, sasl-3.3, stdlib-4.1

ssh-5.2.11.11

The ssh-5.2.11.11 application can be applied independently of other applications on a full OTP 27 installation.

Fixed Bugs and Malfunctions

  • The SSH client and server now reject incoming packets not aligned to the cipher block size as required by RFC 4253 §6. For CBC ciphers, a timing-safe "packet discard" mechanism (CVE-2008-5161 mitigation) ensures structural errors are indistinguishable from MAC failures before disconnecting. AEAD and encrypt-then-MAC modes disconnect immediately.

    Own Id: OTP-20137
    Related Id(s): PR-11110

Full runtime dependencies of ssh-5.2.11.11

crypto-5.0, erts-14.0, kernel-9.0, public_key-1.6.1, runtime_tools-1.15.1, stdlib-5.0, stdlib-6.0


Configuration

📅 Schedule: (in timezone America/Toronto)

  • Branch creation
    • Only on Sunday (* * * * 0)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot added the renovate label Aug 16, 2026
@renovate
renovate Bot requested a review from a team as a code owner August 16, 2026 07:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants