nginx:1.24 security, bug fix, and enhancement update
エラータID: AXSA:2026-1509:01
nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage.
Security Fix(es):
* nginx: NGINX: Arbitrary code execution or Denial of Service via heap-based buffer overflow with crafted HTTP/2 headers (CVE-2026-42055)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2026-42055
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set to off, and the large_client_header_buffers directive size is larger than 2 megabytes. A remote, unauthenticated attacker, along with conditions beyond their control, could send large headers while creating an upstream request. This may cause a heap-based buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Modularity name: "nginx"
Stream name: "1.24"
Update packages.
NGINX Plus and NGINX Open Source have a vulnerability in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules. This vulnerability exists when the proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2 traffic, the ignore_invalid_headers directive is set to off, and the large_client_header_buffers directive size is larger than 2 megabytes. A remote, unauthenticated attacker, along with conditions beyond their control, could send large headers while creating an upstream request. This may cause a heap-based buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
N/A
SRPMS
- nginx-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.src.rpm
MD5: f1c75d64536e69f345ebd53de1dc23f0
SHA-256: 8d6cea5ebe76cfeb04a9d5468d08489c370bc8036d2c05c1e029562b0c5e7bcc
Size: 1.14 MB
Asianux Server 9 for x86_64
- nginx-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: e81ba33633f555c5363c26bb6d639abb
SHA-256: a7552fcc0b6de8a36e28878ef1b003652a334779de19b4975a9f1439be874a38
Size: 36.97 kB - nginx-all-modules-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.noarch.rpm
MD5: 54e26daa10d9fc83c32e32cec52f44f9
SHA-256: 643bf93952b4925ca26ada29f316d6e9b02227a072d3761ef9e427967df456e4
Size: 8.45 kB - nginx-core-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 98a60821103594aa212a396f3bc01ef2
SHA-256: 2f738d2853c904c1bbd89a3e3d3ff208a0d6e720615ffd070c4ea2b7e82f9da0
Size: 584.57 kB - nginx-debugsource-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 0b31cba81a9c94345ac947e79bbc463a
SHA-256: 4442d38607788246897b8fbf386d902b63958e73d5444d138c9bfa497662e8a6
Size: 618.15 kB - nginx-filesystem-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.noarch.rpm
MD5: dfeb4f21865bae034d1ab358a5c72d28
SHA-256: 9f1b40796c02e0e9d3f497379442468da3c9550279327c9c6ebf8dc1ac7298fc
Size: 9.40 kB - nginx-mod-devel-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 097a6d2e78fd5cf2e5ca8bf02823752d
SHA-256: b35de7ecb89ccfe29490fb483e5dc20d71f97ef071616d4fef558fe986148d73
Size: 884.10 kB - nginx-mod-http-image-filter-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 7acf829ed72a263cff3c470acc816c32
SHA-256: 3695b33143f0d5bd3be93888d2472f1a43016cbcfb2c273a78bd386b929f3e8c
Size: 20.06 kB - nginx-mod-http-perl-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 0c3567ef5a77c462a898e34135b39e3a
SHA-256: 6393fdd4d8c52419ed80a36780cb691186ab31a91ca19c5f9cf21519b6c01bd2
Size: 31.42 kB - nginx-mod-http-xslt-filter-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 5b20a05dd0db4217c63a983f05c2c9b8
SHA-256: 3cb6118dec2dbe706108179ea90b6e039665c86dfd517f4a8244b660f6b292d4
Size: 18.81 kB - nginx-mod-mail-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 003758e8bbc085cc443b0575b060981a
SHA-256: f7b54c3c152fc577fc591cab8fb0c3afc94f8d7e0228077b57f11ca2daf7c1e3
Size: 53.68 kB - nginx-mod-stream-1.24.0-7.module+el9+1176+9047e90f.3.ML.1.x86_64.rpm
MD5: 95a34361ef9aa9feac8137fd556710f7
SHA-256: abe22d5b12c9691fddf00b9f72f87f2053fa056dd81fbcdf08530054be207341
Size: 80.35 kB