[CLSA-2026:1779789531] Fix CVE(s): CVE-2026-9256
Type:
security
Severity:
Low
Release date:
2026-05-26 09:58:55 UTC
Description:
* SECURITY UPDATE: fix heap buffer overflow in ngx_http_rewrite_module with overlapping captures - debian/patches/CVE-2026-9256.patch: fix heap buffer overflow in ngx_http_rewrite_module with overlapping captures - CVE-2026-9256
Updated packages:
  • nginx_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_all.deb
    sha:9d221b2d29a08f4137589057297347ed1cca76a9
  • nginx-common_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_all.deb
    sha:9e3e9f59480c75fe89dcaf0805c18f0e20d4098a
  • nginx-core_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_amd64.deb
    sha:28dfeb66dfd77c01a0b47b5151c6bd3def956b36
  • nginx-doc_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_all.deb
    sha:15a0d6774469c21f73810396b646b3ce09258bc6
  • nginx-extras_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_amd64.deb
    sha:9c59211c607766390e8e5d646c841f27d7ec3fda
  • nginx-full_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_amd64.deb
    sha:ebbc936210b514e0b389f525c11b8d640f00dc41
  • nginx-light_1.10.3-0ubuntu0.16.04.8+tuxcare.els7_amd64.deb
    sha:e662aeca3529c4196c9c5640bcfa48086fc242d5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.