|
nginx (1.18.0-6ubuntu14.21) jammy-security; urgency=medium
* SECURITY UPDATE: DoS and possible code execution via map directive
- debian/patches/CVE-2026-42533.patch: fix DoS and possible code execution
via map directive in src/http/modules/ngx_http_fastcgi_module.c,
src/http/modules/ngx_http_grpc_module.c,
src/http/modules/ngx_http_index_module.c,
src/http/modules/ngx_http_proxy_module.c,
src/http/modules/ngx_http_rewrite_module.c,
src/http/modules/ngx_http_scgi_module.c,
src/http/modules/ngx_http_try_files_module.c,
src/http/modules/ngx_http_uwsgi_module.c, src/http/ngx_http_script.c,
src/http/ngx_http_script.h, src/stream/ngx_stream_script.c,
src/stream/ngx_stream_script.h.
- CVE-2026-42533
-- Marc Deslauriers Sun, 06 Sep 2026 18:25:11 -0400
|