End of life

RabbitMQ 3.12 end of life

RabbitMQ 3.12 reached community end of life on 21 February 2024, when 3.13 was released. The final release on the line was 3.12.14. Clusters still on 3.12 face a two-hop upgrade, because RabbitMQ requires a stop at 3.13 before moving to 4.x.

End of life
21 February 2024
Released
Jun 2023
Final release
3.12.14
Successor
RabbitMQ 3.13, then 4.x

Date published by RabbitMQ release information. We do not publish a lifecycle date we cannot source.

What actually stops on 21 February 2024

  • Community releases on the 3.12.x line. 3.12.14 was the last.
  • Security fixes for the broker, management plugin and shipped plugins.
  • Erlang/OTP compatibility updates for the line.

What actually breaks in the upgrade

Two hops, and the second one is the hard one

3.12 to 3.13 is a routine rolling upgrade. 3.13 to 4.x removes classic mirrored queues and requires the move to quorum queues, which is application work. Plan the two as one programme; teams that do the easy hop and stop end up back in the same position a year later.

Feature flags must be enabled before you move

RabbitMQ gates upgrades behind required feature flags. All flags from the current version must be enabled before upgrading to the next minor, and a cluster that has been upgraded in place repeatedly sometimes has flags left disabled from an earlier hop. Check before you plan the window, not during it.

Your options, costed honestly

Including the ones that do not involve buying anything from us.

OptionWhat it isEffortCostOur view
Upgrade 3.12 to 3.13 now, 4.x nextRolling upgrade, then the quorum queue programme.Days, then quartersEngineering timeDo the first hop immediately: it is routine and it gets you to the required stepping stone.
Extended support on 3.12Backported CVE fixes for the broker and Erlang layer.DaysSubscriptionRight when an ISV product pins the version and cannot be moved.
Stay unpatchedOver two years of unpatched broker CVEs.NoneZero nowGiven that the first upgrade hop is routine, this is the hardest position on this list to justify.

What OSSeva does for RabbitMQ 3.12

OSSeva patches this line

OSSeva backports CVE fixes to RabbitMQ 3.12 and its Erlang runtime. In most 3.12 cases we will recommend the rolling upgrade to 3.13 first, because it is routine work that materially reduces your exposure, and take the support conversation from there.

RabbitMQ extended support

What your auditor will say

PCI DSS 4.0

Requirement 6.3.3, applied to the broker as a system component.

SOC 2

CC7.1, plus availability. Two years unpatched is a clear control gap.

Compliance library

RabbitMQ 3.12: common questions

When did RabbitMQ 3.12 reach end of life?

21 February 2024, when RabbitMQ 3.13 was released. The final release was 3.12.14.

Can I upgrade RabbitMQ 3.12 straight to 4.x?

No. RabbitMQ requires an upgrade through 3.13 first. It is a two-hop migration, and the second hop is the one that removes classic mirrored queues.

Is upgrading RabbitMQ 3.12 to 3.13 risky?

It is a routine rolling upgrade for most clusters. The main precondition is that all required feature flags from the current version are enabled before you start, which is easy to check and easy to forget.

Can I get security patches for RabbitMQ 3.12?

Yes, from a third-party provider. OSSeva backports CVE fixes to the 3.12 line and the Erlang runtime beneath it — though for most 3.12 clusters we would recommend the routine upgrade to 3.13 first.

Still running RabbitMQ 3.12?

Tell us the versions and the estate size. We will tell you honestly whether to upgrade or to buy cover — and we say 'upgrade' more often than you would expect.