nginx-1.20.1-28.el9_8.4.ML.1
エラータID: AXSA:2026-1470:06
nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.
Security Fix(es):
* nginx: NGINX: Arbitrary code execution or Denial of Service via heap-based buffer overflow with crafted HTTP/2 headers (CVE-2026-42055)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-42055
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set to off, and the large_client_header_buffers directive size is larger than 2 megabytes. A remote, unauthenticated attacker, along with conditions beyond their control, could send large headers while creating an upstream request. This may cause a heap-based buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Update packages.
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set to off, and the large_client_header_buffers directive size is larger than 2 megabytes. A remote, unauthenticated attacker, along with conditions beyond their control, could send large headers while creating an upstream request. This may cause a heap-based buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
N/A
SRPMS
- nginx-1.20.1-28.el9_8.4.ML.1.src.rpm
MD5: 8b6daddf44b1b0acd38edefe920f71b0
SHA-256: 7f4acbf3f8460966881fb3ef0c511ce710a3e25397aa0f35795c1587be3ac881
Size: 1.09 MB
Asianux Server 9 for x86_64
- nginx-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 08675e35117ee4764d8359a01f8d30b2
SHA-256: 9cbc898881dd077b1f25c25851d573021275bbf8b4cf53f222774c6b9a4dafd4
Size: 37.59 kB - nginx-all-modules-1.20.1-28.el9_8.4.ML.1.noarch.rpm
MD5: 2e66b6c51c26e41a1c9dbb32aca099ac
SHA-256: 49e6de114ea9ceed16a6d1418bda9ec4d626f6bc3cfe1aac038a82831f8bbdd4
Size: 9.25 kB - nginx-core-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 695f043235c3afb828e3ed3700dae0d4
SHA-256: 20879292facfdadada3ced7e16c51d5fc90c20eab1e0a4cd67ff7a9840a3e453
Size: 575.02 kB - nginx-filesystem-1.20.1-28.el9_8.4.ML.1.noarch.rpm
MD5: 85cf303ce12432c3d9fc65c2a0d225a1
SHA-256: 2c43395b056ecc9277bf6424c188840c5941c5bfbb82da092e4c870886895bb3
Size: 10.82 kB - nginx-mod-devel-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 3990d5ba44fe5f9cf0be6bf837a42798
SHA-256: 065d502231caccbbaa7c2d8d05e150ae361172dc25d677abf2783a2bc59a6a42
Size: 836.87 kB - nginx-mod-http-image-filter-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 5d4687dc93c5feed852f6a239ba015df
SHA-256: 5a18b36342bdd1c6c3e29e316ae87e465e7eb5e278fc71d22eefa9787571b1cc
Size: 20.93 kB - nginx-mod-http-perl-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 3981bdcc00526f8d79bd03f8799040d7
SHA-256: 2969f7df5ef2c1296359275781d276e57999681beca6595b6b20743ea12c3cce
Size: 32.32 kB - nginx-mod-http-xslt-filter-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: e44245d3d7784478f52e046b75b4e404
SHA-256: 7d4921999b84d4fb3b08004440fab26e73b61ff2c19f55caa8fc27943f4845e9
Size: 19.67 kB - nginx-mod-mail-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: e3da0287a44fb8492201eb6b81e69c70
SHA-256: 24b71e05134bb49adbc2c9414a780c0d7435a533f93689bb463eda8f1f5a17ca
Size: 53.30 kB - nginx-mod-stream-1.20.1-28.el9_8.4.ML.1.x86_64.rpm
MD5: 8cb5ad08fa39d42e86167d5a2459f270
SHA-256: d69a075247f5dfbc5f8560a7d63afac7188401b43e77bfe26c28a47dfa651add
Size: 78.55 kB