rh-nginx116-nginx-1.16.1-4.1.0.1.el7.AXS7, rh-nginx116-1.16-1.el7

エラータID: AXSA:2021-1752:01

Release date: 
Tuesday, May 18, 2021 - 05:52
Subject: 
rh-nginx116-nginx-1.16.1-4.1.0.1.el7.AXS7, rh-nginx116-1.16-1.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
Moderate
Description: 

nginx is a web and proxy server supporting HTTP and other protocols, with a
focus on high concurrency, performance, and low memory usage.

This enhancement update adds the rh-nginx116 packages to Asianux Software
Collections.

Security Fix(es):

* nginx: HTTP request smuggling via error pages in
http/ngx_http_special_response.c (CVE-2019-20372)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.

CVE-2019-20372
NGINX before 1.17.7, with certain error_page configurations, allows HTTP request
smuggling, as demonstrated by the ability of an attacker to read unauthorized
web pages in environments where NGINX is being fronted by a load balancer.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. rh-nginx116-nginx-1.16.1-4.1.0.1.el7.AXS7.src.rpm
    MD5: 9d6e3887f4f344262bda793e5f15d3aa
    SHA-256: 08607cfc6c29022bba1bec02b6d99afde6bed92e9d0a6b31c8750b9fc7719c16
    Size: 1.03 MB
  2. rh-nginx116-1.16-1.el7.src.rpm
    MD5: 11983c31754cae676d436a61a1d9dce1
    SHA-256: 6890151498c29655f1a15a8b57034906d9296eec92ff4ba2d65a20c2dcf03b6c
    Size: 11.75 kB

Asianux Server 7 for x86_64
  1. rh-nginx116-nginx-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: a38b1a70e807f860c16f0389ff9f725f
    SHA-256: c45c6ae99a54f46566d58bcac078078cec0d520d5dbcb00470e79a09b8260eba
    Size: 550.33 kB
  2. rh-nginx116-nginx-mod-http-image-filter-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: 48df1217a35d1d768c9498267736d756
    SHA-256: 1cb455489d8ac3c062008162cbf301d8fa4bc4167e17d001495aa7aab9da22b9
    Size: 24.74 kB
  3. rh-nginx116-nginx-mod-http-perl-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: 21b522f8f2eca029fbae20e0c6be123e
    SHA-256: 9da20f7e4579d535331ac81aaef61b425ff532001b5c544d9b349aebae7dd5df
    Size: 36.62 kB
  4. rh-nginx116-nginx-mod-http-xslt-filter-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: dcdbfd85fe14eecdd1077f993aae6b09
    SHA-256: c295e3083db816fc1bb04ef1ced75139752d688ada07edc45d7368700fbb2ffc
    Size: 23.90 kB
  5. rh-nginx116-nginx-mod-mail-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: 839d39344e448c30894da9d92882c0d8
    SHA-256: 3484b301cc3c88645bad0131f1f7f7a41a8412210979d9d51e6236b0c3e2ab59
    Size: 51.94 kB
  6. rh-nginx116-nginx-mod-stream-1.16.1-4.1.0.1.el7.AXS7.x86_64.rpm
    MD5: 3ea52c66f6eeee25ad9bd8378ab854c3
    SHA-256: 11da70b1e6eb34eaedce2cd177ea557c454158f2df86d97effada3c81c758616
    Size: 79.45 kB
  7. rh-nginx116-1.16-1.el7.x86_64.rpm
    MD5: 2de6bc41194880d7a772a1332dcd19dd
    SHA-256: 9fdc05400b52dbb618ddce68404aea328aa283ec56a21ee1fabf0912ef3d43c8
    Size: 1.92 kB
  8. rh-nginx116-runtime-1.16-1.el7.x86_64.rpm
    MD5: ceb9624c91d7386d219dd7b914ca2c37
    SHA-256: 4176bd288a7801f73603b014e44904ba7fb0a9b5e10057aa32f67ac3d8acc7c4
    Size: 25.61 kB