UbuntuUpdates.org

Package "nginx"

Name: nginx

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • GeoIP HTTP module for Nginx
  • Perl module for Nginx
  • GeoIP Stream module for Nginx
  • nginx web/proxy server - development headers

Latest version: 1.24.0-2ubuntu7.17
Release: noble (24.04)
Level: security
Repository: universe

Links



Other versions of "nginx" in Noble

Repository Area Version
base universe 1.24.0-2ubuntu7
base main 1.24.0-2ubuntu7
security main 1.24.0-2ubuntu7.17
updates main 1.24.0-2ubuntu7.17
updates universe 1.24.0-2ubuntu7.17
PPA: Nginx from nginx.org 1.30.4-1~noble

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 1.24.0-2ubuntu7.17 2026-08-19 22:08:10 UTC
No changelog available yet.
Source diff to previous version

Version: 1.24.0-2ubuntu7.16 2026-08-19 15:08:55 UTC
No changelog available yet.
Source diff to previous version

Version: 1.24.0-2ubuntu7.15 2026-07-20 23:08:45 UTC
No changelog available yet.
Source diff to previous version

Version: 1.24.0-2ubuntu7.14 2026-07-20 19:08:59 UTC
No changelog available yet.
Source diff to previous version

Version: 1.24.0-2ubuntu7.13 2026-06-22 15:07:49 UTC

  nginx (1.24.0-2ubuntu7.13) noble-security; urgency=medium

  * SECURITY UPDATE: heap overflow via large headers
    - debian/patches/CVE-2026-42055.patch: limit header length for HTTP/2 and
      gRPC in src/http/modules/ngx_http_grpc_module.c.
    - CVE-2026-42055
  * SECURITY UPDATE: heap overread in ngx_http_charset_module
    - debian/patches/CVE-2026-48142.patch: Charset: fixed another rare buffer
      overread in recode_from_utf8() in
      src/http/modules/ngx_http_charset_filter_module.c.
    - CVE-2026-48142

 -- Marc Deslauriers <email address hidden> Fri, 19 Jun 2026 09:52:54 -0400

CVE-2026-42055 NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists whe
CVE-2026-48142 NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_charset_module module. When content is served or proxied through a location blo



About   -   Send Feedback to @ubuntu_updates