[CLSA-2026:1784632234] Fix CVE(s): CVE-2026-42533
Type:
security
Severity:
Low
Release date:
2026-07-21 11:10:59 UTC
Description:
* SECURITY UPDATE: heap buffer overflow and info-leak via regex map capture variables - debian/patches/CVE-2026-42533.patch: add script engine buffer-overrun protection - CVE-2026-42533
CVEs fixed:
Updated packages:
  • nginx_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_all.deb
    sha:ab8f6885e0eba6a5757e1f0f3a6ea13d054b8ae7
  • nginx-common_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_all.deb
    sha:4f4e7463746c2cd5003254c82a69354f877b554a
  • nginx-core_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_amd64.deb
    sha:1f769fa7526c6da232056122e2fc8ffbfbfecf7a
  • nginx-doc_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_all.deb
    sha:afeaeffce29fa065f78f157c361507fa65b6ec0e
  • nginx-extras_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_amd64.deb
    sha:3c89d93683673fd329dce56342d969724a8c0870
  • nginx-full_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_amd64.deb
    sha:91853c4bec88625fac99c386fdbc9f43d835c2e8
  • nginx-light_1.10.3-0ubuntu0.16.04.8+tuxcare.els10_amd64.deb
    sha:b0d8b4e1ae00bf3fe240c6a4983f014c58776b0d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.