UbuntuUpdates.org

Bugs fixes in "nginx"

Origin Bug number Title Date fixed
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
CVE CVE-2019-20372 NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read una 2020-01-13
Launchpad 1840404 [regression] 1.14.0-0ubuntu1.4 security update enables TLS1.3 without a choice 2019-08-16
Launchpad 1840404 [regression] 1.14.0-0ubuntu1.4 security update enables TLS1.3 without a choice 2019-08-16
Launchpad 1840404 [regression] 1.14.0-0ubuntu1.4 security update enables TLS1.3 without a choice 2019-08-16
Launchpad 1840404 [regression] 1.14.0-0ubuntu1.4 security update enables TLS1.3 without a choice 2019-08-16
CVE CVE-2019-9516 Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with 2019-08-15
CVE CVE-2019-9513 Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request strea 2019-08-15
CVE CVE-2019-9511 Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of ser 2019-08-15
CVE CVE-2019-9516 Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with 2019-08-15
CVE CVE-2019-9513 Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request strea 2019-08-15
CVE CVE-2019-9511 Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of ser 2019-08-15
CVE CVE-2019-9516 Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with 2019-08-15
CVE CVE-2019-9513 Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request strea 2019-08-15



About   -   Send Feedback to @ubuntu_updates