Skip to content

fix(deps): update module github.com/quic-go/quic-go to v0.63.0 - #46

Closed
renovate[bot] wants to merge 563 commits into
mainfrom
renovate/github.com-quic-go-quic-go-0.x
Closed

renovate[bot] wants to merge 563 commits into
mainfrom
renovate/github.com-quic-go-quic-go-0.x

Conversation

@renovate

@renovate renovate Bot commented Sep 30, 2026

Copy link
Copy Markdown

This PR contains the following updates:

Package Change Age Confidence
github.com/quic-go/quic-go v0.61.0 → v0.63.0 age confidence

Release Notes

quic-go/quic-go (github.com/quic-go/quic-go)

v0.63.0

Compare Source

This release improves HTTP/3 request handling and error reporting.

Breaking Changes

  • http3: non-CONNECT server requests now leave URL.Scheme and URL.Host empty, matching net/http: #​5839
  • http3: Extended CONNECT now leaves URL.Scheme and URL.Host empty and sets RequestURI to :path: #​5841
  • http3: stream APIs now return QUIC stream and application errors as *http3.Error: #​5852

Notable Fixes

  • http3: :path must start with /; only OPTIONS allows *: #​5842
  • quicvarint: complete varints now decode successfully when returned alongside io.EOF or another reader error: #​5876

Notable Changes

  • http3.Error now supports unwrapping the underlying QUIC stream or application error: #​5873
  • http3.ClientConn now exposes LocalAddr and RemoteAddr: #​5871

Changelog

Full Changelog: quic-go/quic-go@v0.62.0...v0.63.0

v0.62.0

Compare Source

This release adds support for stream priorities based on RFC 9218:

  • SendStream and Stream now expose SetPriority, allowing applications to set the urgency and incremental scheduling behavior of stream data. Retransmissions are prioritized over new stream data and respect stream priorities: #​5770, #​5774
  • HTTP/3 servers now apply priorities from request Priority headers and PRIORITY_UPDATE frames. Priority updates are also recorded in qlog for both HTTP/3 and QUIC streams: #​5783, #​5789, #​5790, #​5795

Notable Changes

  • http3.Stream and http3.RequestStream now expose TryWriteAll, which queues a complete DATA frame without blocking or returns quic.ErrWouldBlock without queueing anything: #​5765
  • Reliable Stream Resets are now advertised using both the draft-09 and legacy draft-07 transport parameters, restoring interoperability with Safari for WebTransport: #​5782, thanks to @​0xFA11

Breaking Changes

  • quic-go now requires Go 1.26 or newer: #​5801

Notable Fixes

  • Connections now reject unread CRYPTO data as soon as TLS advances to the next encryption level, instead of waiting until the previous keys are discarded: #​5824
  • http3: servers now reject 0-RTT when their current SETTINGS are incompatible with those stored in the session ticket, preventing early requests from relying on settings the server no longer supports: #​5771
  • http3: requests containing userinfo in :authority are now rejected for HTTP and HTTPS URIs: #​5825
  • http3: request schemes are now normalized to lowercase: #​5826
  • http3: request methods are now validated as HTTP tokens; unknown methods with valid syntax remain accepted: #​5827
  • http3: Host is now used for HTTP and HTTPS requests when :authority is omitted, while conflicting Host and :authority values are rejected: #​5828
  • http3: regular CONNECT requests containing :scheme are now rejected: #​5829
  • http3: requests containing duplicate Host header fields are now rejected: #​5830
  • http3: empty pseudo-header fields are no longer treated as omitted, ensuring duplicate fields and CONNECT requirements are validated correctly: #​5833
  • http3: successful CONNECT responses are no longer transparently gzip-decoded, preserving tunnel data and the Content-Encoding header: #​5834
  • Conn.NextConnection now returns the connection context's error if the connection closes before the handshake completes: #​5764, thanks to @​floating-cat
  • Closing a validated path now retires its connection ID, without racing connection shutdown and panicking: #​5798, #​5823, thanks to @​tlstpierre
  • OpenBSD now requests a supported 2 MiB socket buffer size and correctly verifies the configured size, avoiding ineffective buffer increases and spurious warnings: #​5787, thanks to @​the-sarge

Changelog

New Contributors

Full Changelog: quic-go/quic-go@v0.61.0...v0.62.0


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

Includes PR compose-miuix-ui/miuix#402: keep snackbar above the floating
toolbar (floating nav bar no longer covers the snackbar).
…test

- burstObservatory destination now uses the configured connectivity test
  target (http://www.gstatic.com/generate_204 by default) so dashboard
  latency and the removed test shared one probe
- add per-node latency debug logging (ConfigUtils/MainViewModel)
- remove the top-bar connectivity test button and its testConnectivity()
  implementation, related strings and ic_flash drawable
- document the latency display behavior in docs/README(.CN).md
Dashboard node latency now comes from a lightweight 1-RTT TCP connect to
each outbound's server endpoint (vless/vmess vnext[0], trojan/ss/http/socks
servers[0]) instead of the Xray observatory API:
- ConfigUtils: extractOutboundEndpoints; drop burstObservatory injection
  and ObservatoryService from api.services; delete observatory protos
- TcpPing: blocking Socket connect probe (1500ms timeout, cancellation-safe)
- MainViewModel: testOutboundLatency (parallel, limited to 8) + debounced
  refreshLatency; CoreStatsClient loses the observatory stub
- Dashboard: probe once on enter + manual refresh button (UDP-only nodes
  such as wireguard/hysteria2 keep showing no data)
renovate Bot and others added 12 commits September 25, 2026 10:47
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
…ndroid to v2.10.2 (#41)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
…bar to v3 (#37)

* fix(deps): update dependency com.github.nanihadesuka:lazycolumnscrollbar to v3

* fix(deps): use android artifact for lazycolumnscrollbar v3

---------

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: ReRokutosei <35906080+ReRokutosei@users.noreply.github.com>
#36)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
#42)

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
* feat(simpletun): initial scaffold and phase 1 conservative handshake

* feat(simpletun): phase 2 tombstone fast-recycle and dynamic backpressure

* feat(simpletun): phase 3 socks5 udp associate and microbench progress streaming

* feat(simpletun): phase 4 jni integration and android native lifecycle

* fix(simpletun): eliminate busy-loops, harden tcp/udp state machines and prevent stack overflows

* docs(simpletun): update specification, agent guidelines, and benchmark tooling

* fix(simpletun): eliminate lifecycle deadlock, prevent tun drops and batch ingress packets

* test(benchmark): support --output-dir to customize dataset target directory

* perf(simpletun): eliminate linear scans, decouple overflow buffers and enable 0-copy downstream

* docs(simpletun): update architecture spec to v0.3-perf

* chore(simpletun): update summary

* ci: add simpletun build step to verify and release workflows

* fix(simpletun): refine partial write rcv_nxt, defer FIN shutdown, and relax EPOLLHUP

* feat(simpletun): expand flow capacity to 1024, harden lifecycle I/O, and update benchmark reports

- Expand FlowTable.CAPACITY from 512 to 1024 in flow.zig and simpletun_spec.md to support 1000 concurrent idle flows
- Harden bridge.c lifecycle with SpinLock synchronization and writeTun poll retry on EAGAIN
- Improve idle_bench probe settlement and bufferbloat TCP echo sampling tolerance
- Integrate SimpleTUN benchmark datasets, WebP charts, and mega infographics for Snapdragon 778G and Snapdragon 8 Elite Gen 5
- Update Section 1.2 through Section 6 in both device benchmark reports

* docs(benchmark): update Scheme 2 microbench 3-round summary for SimpleTUN

* feat(ui): disable MTU configuration and lock to 1500 when SimpleTUN is active

* fix(simpletun): harden FIN and I/O handling, omit IPv6 route, and sync benchmark datasets

* fix(simpletun): fix UDP endianness, epoll leak, deadlock, and buffer bounds

* test(simpletun): assert packet layouts and run tests in ci

* feat(simpletun): add incremental socks5 handshake parser

* refactor(simpletun): replace upstream overflow buffers with zero-window retransmission

* feat(simpletun): add downstream send window and tun backpressure

* feat(simpletun): add lifecycle timers and tombstone handling

* feat(simpletun): make udp associate non-blocking and add dns ttl

* fix(simpletun): validate ip packet bounds and drop fragments

* fix(simpletun): prewarm udp associate before udp traffic

* fix(benchmark): reap device iperf3 after each throughput case

* docs(benchmark): sync simpletun light benchmark results

* feat(benchmark): add integrated quic http3 smoke suite

* docs(simpletun): add ipv6 future work plan
@renovate renovate Bot added the dependency label Sep 30, 2026
@renovate

renovate Bot commented Sep 30, 2026

Copy link
Copy Markdown
Author

ℹ️ Artifact update notice

File name: tools/quic/go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.25.0 -> 1.26.0

@coderabbitai

coderabbitai Bot commented Sep 30, 2026 •

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

⚙️ Run configuration

Configuration used: defaults

Review profile: CHILL

Plan: Advanced

Run ID: c1059900-69e0-4cd6-90db-56ba316a8623

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

Use the checkbox below for a quick retry:

  • 🔍 Trigger review
  • Autopilot · Keep fixing CodeRabbit findings and required CI, and resolving merge conflicts

Autopilot is currently an internal CodeRabbit preview.


Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands.

ReRokutosei and others added 10 commits September 30, 2026 21:13
linux.epoll_wait returns usize in Zig, causing 'num_events < 0' to be
evaluated as false and optimized away by Release builds. Under EINTR
or stop signals, the negative return code overflowed to a large usize,
causing events slice iteration to run off the stack and crash with SIGSEGV.
Implement progressive watermarking (80% high, 92% critical) to defend
against connection pool exhaustion without heap allocations:
- Scale down tombstone retention to 500ms (high) and 100ms (critical)
- Proactively evict established flows idle > 3m (high) or > 1m (critical)
- Aggressively terminate stuck handshakes after 3s (high) or 1.5s (critical)
- Allow adaptive early tombstone reclamation in allocate()
@renovate
renovate Bot force-pushed the renovate/github.com-quic-go-quic-go-0.x branch from 1b65d0e to 7e7adb5 Compare October 1, 2026 15:32
@ReRokutosei ReRokutosei closed this Oct 3, 2026
@renovate

renovate Bot commented Oct 3, 2026

Copy link
Copy Markdown
Author

Renovate Ignore Notification

Because you closed this PR without merging, Renovate will ignore this update (v0.63.0). You will get a PR once a newer version is released. To ignore this dependency forever, add it to the ignoreDeps array of your Renovate config.

If you accidentally closed this PR, or if you changed your mind: rename this PR to get a fresh replacement PR.

@renovate
renovate Bot deleted the renovate/github.com-quic-go-quic-go-0.x branch October 3, 2026 11:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant