[CLSA-2026:1779789551] nginx: Fix of CVE-2026-9256
Type:
security
Severity:
Low
Release date:
2026-05-26 09:59:17 UTC
Description:
- CVE-2026-9256: fix heap buffer overflow in ngx_http_rewrite_module with overlapping captures
Updated packages:
  • nginx-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:f210c04ec35c22c36ae84e6f2115c73b8890ba081a54710f15e49d69b6aadae0
  • nginx-all-modules-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.noarch.rpm
    sha:1db327438586b7cff25461b8760a33a197d5268840de47647210e9cd8846797b
  • nginx-filesystem-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.noarch.rpm
    sha:73f7d9f7463c910ce7dc301fb50f4b2fc9fa081cff90f0bf235e68c0d6727ce4
  • nginx-mod-http-image-filter-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:c29e52b336ea00a26ee4b63da248afc9fe4862533a34c3b1249726e6e66df039
  • nginx-mod-http-perl-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:31e542c6234bbc045ac6b22e7be9b1b58189bb17ec6b80287ed603f85e9d036c
  • nginx-mod-http-xslt-filter-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:9cac6f4d212bcdfb3892810bfd0aa0d76bac63b41b5c1f5f441d31ab2ff70d4c
  • nginx-mod-mail-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:ab7a5cd0df8871a5e320c6ecdaca6b13ddf99c7de229ea160bc85b7d63c935e8
  • nginx-mod-stream-1.14.1-9.module_el8.5.0+2409+03996a02.tuxcare.els7.x86_64.rpm
    sha:13aeb06995aa6dc4b211103bc7f12794a9c23ce5451e187a91f67ff3483bfad4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.