UbuntuUpdates.org

Bugs fixes in "nginx"

Origin Bug number Title Date fixed
CVE CVE-2022-41742 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R 2022-11-15
CVE CVE-2022-41741 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R 2022-11-15
CVE CVE-2022-41742 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R 2022-11-15
CVE CVE-2022-41741 NGINX Open Source before versions 1.23.2 and 1.22.1, NGINX Open Source Subscription before versions R2 P1 and R1 P1, and NGINX Plus before versions R 2022-11-15
Launchpad 1981457 Backport: SSL: use of the SSL_OP_IGNORE_UNEXPECTED_EOF option. 2022-09-22
Launchpad 1981457 Backport: SSL: use of the SSL_OP_IGNORE_UNEXPECTED_EOF option. 2022-09-22
Launchpad 1981457 Backport: SSL: use of the SSL_OP_IGNORE_UNEXPECTED_EOF option. 2022-09-09
Launchpad 1981457 Backport: SSL: use of the SSL_OP_IGNORE_UNEXPECTED_EOF option. 2022-09-09
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-28
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-28
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-28
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-28
CVE CVE-2020-11724 An issue was discovered in OpenResty before 1.15.8.4. ngx_http_lua_subrequest.c allows HTTP request smuggling, as demonstrated by the ngx.location.ca 2022-04-12
CVE CVE-2020-36309 ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or 2022-04-12
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-12
CVE CVE-2020-11724 An issue was discovered in OpenResty before 1.15.8.4. ngx_http_lua_subrequest.c allows HTTP request smuggling, as demonstrated by the ngx.location.ca 2022-04-12
CVE CVE-2020-36309 ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or 2022-04-12
CVE CVE-2021-3618 ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatible certif 2022-04-12
CVE CVE-2020-11724 An issue was discovered in OpenResty before 1.15.8.4. ngx_http_lua_subrequest.c allows HTTP request smuggling, as demonstrated by the ngx.location.ca 2022-04-12
CVE CVE-2020-36309 ngx_http_lua_module (aka lua-nginx-module) before 0.10.16 in OpenResty allows unsafe characters in an argument when using the API to mutate a URI, or 2022-04-12



About   -   Send Feedback to @ubuntu_updates