[CLSA-2026:1791370310] nginx: Fix of CVE-2026-42946
Type:
security
Severity:
Important
Release date:
2026-10-08 22:26:33 UTC
Description:
- CVE-2026-42946: reset the upstream parser state and restore the response buffer position when a status line is not recognised, so proxy, scgi and uwsgi header parsing no longer continues in a stale state or drops already-read data
CVEs fixed:
Updated packages:
  • nginx-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:76ea5be7c05e17d8d1949f21b8b368bb8b7521807a7c820f1efd6c971008c23e
  • nginx-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:fbb09bd8bdd6c976f9061214ce57872517f270f142528f9179719e8966a63c6e
  • nginx-all-modules-1.20.1-10.el7.tuxcare.els11.noarch.rpm
    sha:518306f32559164ab65635a92de796e84622c19018599b824f1611e091640a80
  • nginx-filesystem-1.20.1-10.el7.tuxcare.els11.noarch.rpm
    sha:29b0c1598f8d80f0eed0446010bda5127c6389d6cf600a85002adc56483c7fa6
  • nginx-mod-devel-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:2061b3a306bea0cf392089ae36b1d7c8e8bc7d42c734342d5eb17681dc055a83
  • nginx-mod-devel-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:108b66ff4f27e642f0f88fed1c4aa1853799c0aeef97fe149cd20c4b2bc60b31
  • nginx-mod-http-image-filter-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:bbc8ff74bf1000605501c5ee1a4657c61f112d89a596e8f3766ef5fc9565bb28
  • nginx-mod-http-image-filter-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:a92a54e632eca1e46c639cce81dacc82efcc5aca4854fd360dca3f9681e20f0c
  • nginx-mod-http-perl-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:22683f0e6e76454a5b38874f8a82d7402768313ba2a52857074a7c758945c4cf
  • nginx-mod-http-perl-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:3eb2244d39ea8a257e99155a2a348b0d94e0cebaa77ed50fa6a4ed03b7116298
  • nginx-mod-http-xslt-filter-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:25c35b72f3dec4b24eb18a3e980bf0ed0388ba27f6ffe615ab17a836f9a7a106
  • nginx-mod-http-xslt-filter-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:ad6769de723492fdd75f05e749082ceb261160adef129b583a9415abc9c100ba
  • nginx-mod-mail-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:c249329fcf211b126b071459bc92db75b836db25790bdb8d05d822371f659a7f
  • nginx-mod-mail-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:54b53aa9cd72173dab26581082053af4d32e50102e1e28b436409a911e443a4d
  • nginx-mod-stream-1.20.1-10.el7.tuxcare.els11.i686.rpm
    sha:6d1f4165879e6e20e1c405fae5ee9a0f2a05ad6d6471f75b26eae4d29dc76465
  • nginx-mod-stream-1.20.1-10.el7.tuxcare.els11.x86_64.rpm
    sha:eca571d28fa16aeb57d4adca9ad9f245f99e00eb5dc3e13ee342a9ceec8545f2
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.