[CLSA-2026:1779788634] nginx: Fix of CVE-2026-9256
Type:
security
Severity:
Low
Release date:
2026-05-26 09:43:58 UTC
Description:
- CVE-2026-9256: fix heap buffer overflow in ngx_http_rewrite_module with overlapping captures
Updated packages:
  • nginx-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:76ad1b41a042a65ad496ced0dbfccb441e28d1baccde24391ece3163b5e96abd
  • nginx-all-modules-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.noarch.rpm
    sha:033b0153d72eb32ccab913a9883e6e8d35832c524df933ffb4620637ae5bb117
  • nginx-filesystem-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.noarch.rpm
    sha:bbb39c66da6d68f016e8870677107ec80a72a5efd131c14c3d3c75c32e77246b
  • nginx-mod-http-image-filter-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:f9914d0074f83b01aedc593f8fe9a376059ddc5f96006c3e52635332fb1c0714
  • nginx-mod-http-perl-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:a2e823c7671e0717391397ed26e8bab33a9d01dc09454f297f5eff069ca273f9
  • nginx-mod-http-xslt-filter-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:ee88a3761fa0a73ac5656644232ac14f518bcf4b1ebf499dab06440fd3dafab0
  • nginx-mod-mail-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:ff94bb4feaafa36653d5a5a48ebe5eec25cda2a7cc66ef46c132d96911676e97
  • nginx-mod-stream-1.14.1-9.module_el8.4.0+2408+1d12a932.tuxcare.els7.x86_64.rpm
    sha:d6d56d002df5228afa07506e7eb452b03b9c137a152f66bc6518c613d8e6a2a2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.