[CLSA-2026:1784800978] nginx: Fix of CVE-2026-42533
Type:
security
Severity:
Low
Release date:
2026-07-23 10:03:24 UTC
Description:
- CVE-2026-42533: add script engine buffer-overrun protection to fix heap overflow and info-leak via regex map capture variables
CVEs fixed:
Updated packages:
  • nginx-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:f730a4b04b99472dd90b6698b2c80832b24f7d761ba9b6d8b7196a7039c34930
  • nginx-all-modules-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.noarch.rpm
    sha:8e6e77a1ed444e48972d40498c9c0f26f766180697992aae954cbf2cdaff2e89
  • nginx-filesystem-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.noarch.rpm
    sha:2acf63d3670ac3fb7b4ff1e759acf2af165b28d982fb0e3b2174c488033fc76f
  • nginx-mod-http-image-filter-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:1d45f228b440523283bc8a6644c67cfecce2ee0548480644f07924a831d4fe52
  • nginx-mod-http-perl-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:70921d6021357feb1224ae0d9447992c3a4f340257bbf7aff61e246bd3e8d4a0
  • nginx-mod-http-xslt-filter-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:4923d2ccb4ee607563df7de197c17c68a5b1da1f2d7d3453a94132004b30fa2f
  • nginx-mod-mail-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:0f3672ec892ad04e3fde0416dbf1b5759466c12f339e98edfde72d94d9ac1f0c
  • nginx-mod-stream-1.14.1-9.module_el8+2451+3fbc8700.tuxcare.els12.x86_64.rpm
    sha:9ebd85ad5ec379e3bea0661616137ad05db39af96d61cc271c35be999886b89e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.