[ALSA-2026:59220] Important: nginx security update
Type:
security
Severity:
important
Release date:
2026-08-25
Description:
nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage. Security Fix(es): * nginx: NGINX: Heap buffer over-read allows memory modification or denial of service (CVE-2026-56434) * nginx: NGINX: Memory disclosure and denial of service in ngx_http_slice_module (CVE-2026-60005) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 nginx-1.26.3-6.el10_2.6.aarch64.rpm 6583c9ab3974b4b133ff0ad04c7236c9fdf6b7254ddbb6c46c2bae7d13ab07a6
aarch64 nginx-mod-http-image-filter-1.26.3-6.el10_2.6.aarch64.rpm 724f1db7227b760ed4844d187f080c141988d22cc3c5f458be9c8c99faf56d7b
aarch64 nginx-mod-mail-1.26.3-6.el10_2.6.aarch64.rpm 837b2bc170472f848aa898caf4ded5781bf477aeec8a0accd460d0f9089bbda2
aarch64 nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.aarch64.rpm c54266077c11a1ed2d413555754e01bd01d1109ded570283705f7296568b8045
aarch64 nginx-mod-stream-1.26.3-6.el10_2.6.aarch64.rpm d5fcff822f60f2baf02eea54c9742d890d35f659efbac85724c112332339f151
aarch64 nginx-mod-devel-1.26.3-6.el10_2.6.aarch64.rpm d949c965c5d4324d2e5d2bf1aae25aefa314d8068f54daa48ec7efb237737409
aarch64 nginx-mod-http-perl-1.26.3-6.el10_2.6.aarch64.rpm e2797c67ca3993ca8e664fbc326d0610b7eaf311d27ccd499fa8c2f257941541
aarch64 nginx-core-1.26.3-6.el10_2.6.aarch64.rpm fb84b8028a6d75137ac7cd6687b0e2ca12307009632b7000152eb73a6b9cca73
noarch nginx-all-modules-1.26.3-6.el10_2.6.noarch.rpm 0ee1da66b42d7a7309fa3e289c5fb632caccf67d24aeab9708c03be35a50dd93
noarch nginx-filesystem-1.26.3-6.el10_2.6.noarch.rpm 6a4302dfb7471b2cc3f0c8e4f7944909387b627464c4efe14fde80d576b946c0
ppc64le nginx-mod-devel-1.26.3-6.el10_2.6.ppc64le.rpm 0cec6e3df990bd28f5f8745d2d0b5d0bb4e4297cdad82df0d035def5ffcb5912
ppc64le nginx-mod-http-perl-1.26.3-6.el10_2.6.ppc64le.rpm 532915172d25cffbc317559799a484ff623a70b70220b73d80ff2b37645a1f04
ppc64le nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.ppc64le.rpm 7af544f63f6507d07147cdd4171723145f852408e5a629b1d806424811bc571c
ppc64le nginx-mod-mail-1.26.3-6.el10_2.6.ppc64le.rpm 9883eacb82099e0d4cf8dec59f0d9e13e54cb33af9386d39d397d38baca38fe7
ppc64le nginx-1.26.3-6.el10_2.6.ppc64le.rpm a2c1a8e0192028610b41cf9f4721fa8f10dfdce1e3f6d69d96ce5268954fa16a
ppc64le nginx-core-1.26.3-6.el10_2.6.ppc64le.rpm a4270ab9e6ff5aaf91461f13a1924ddba563fb72b1617ee39cc352c01f11af1e
ppc64le nginx-mod-stream-1.26.3-6.el10_2.6.ppc64le.rpm baf8ad7869e1207b3979b27c8301d45678e52dae31cff5320943d6c26db7085c
ppc64le nginx-mod-http-image-filter-1.26.3-6.el10_2.6.ppc64le.rpm f402aca1bee99d050260ef21cd980c8a99db435c97821d2e57411c906aa02742
s390x nginx-mod-http-perl-1.26.3-6.el10_2.6.s390x.rpm 03361ec31d819c29f1dd325ce455ddb3e23b7fcfb470ed2ab984b576e0ce28a2
s390x nginx-mod-mail-1.26.3-6.el10_2.6.s390x.rpm 5a4ee0b2feb413cb0c5da97b778f5b09af16cdd42f72f2a3a76e61d3b6eb15c1
s390x nginx-core-1.26.3-6.el10_2.6.s390x.rpm 5a9a936b0f23bf97db06337f2a6836eed692d1e4bd58fa3697082c65a8af9434
s390x nginx-mod-http-image-filter-1.26.3-6.el10_2.6.s390x.rpm 5debe3d0b2a138a8e87ccf810caf5499f8fb0778bccc9c3a279352ffdebf25b3
s390x nginx-1.26.3-6.el10_2.6.s390x.rpm 72180d7b4daee331eb945b25fa693d1d6aacc884140b1b7455ea977317817994
s390x nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.s390x.rpm 73b6fce193ba376d825daeed43576ceb6ac002962761ebaa0fdf0d4372afad94
s390x nginx-mod-stream-1.26.3-6.el10_2.6.s390x.rpm ab62b2c4dd64b54838770d1e7f82f6d7f827fe2424cb4e66e7035744f1a5beb8
s390x nginx-mod-devel-1.26.3-6.el10_2.6.s390x.rpm bda6cc11b3fd407fc814d475a8414f524e7ed4457add6add14d72752ca7d0f1e
x86_64 nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.x86_64.rpm 0808efc64090171052224cb49954c8883337aa5ab63138a0d26541e8de9ee0db
x86_64 nginx-mod-stream-1.26.3-6.el10_2.6.x86_64.rpm 1ad1170c1210c1687daa057e774f50f954a385c49870218ecf084c09c301ac51
x86_64 nginx-mod-devel-1.26.3-6.el10_2.6.x86_64.rpm 3b8fd42d942d8301576cd437bfd9143bee5478c418bbec6117f2574a1cacbe4c
x86_64 nginx-mod-http-perl-1.26.3-6.el10_2.6.x86_64.rpm 3e10f861824615855c8f54bb92a0674a2489d411f1781497774d73714afb2c85
x86_64 nginx-1.26.3-6.el10_2.6.x86_64.rpm 53286c61c223a0e039c4545c2f2992079c0a5c6e9a21cd03ed05bab9a0d197c4
x86_64 nginx-core-1.26.3-6.el10_2.6.x86_64.rpm 727c3921fd7052ff2bb79c637111e39b9bd3635c9f00ec04cffd7092e968a084
x86_64 nginx-mod-mail-1.26.3-6.el10_2.6.x86_64.rpm d10ae0f9bde0d7030ce1c95922b068fdaf8519d5e5a5fcb16baa9dae954a6662
x86_64 nginx-mod-http-image-filter-1.26.3-6.el10_2.6.x86_64.rpm e06ade48e942e2761d888a9a6d2f1d812e0516c29ec5310c870b650c65e211a9
x86_64_v2 nginx-mod-devel-1.26.3-6.el10_2.6.x86_64_v2.rpm 609e76b3ab9c01489b2f42ae277f37c92fd1090ae8595fd8d3a9b146ef546744
x86_64_v2 nginx-mod-http-perl-1.26.3-6.el10_2.6.x86_64_v2.rpm 7350697101a72237173d7ea4798bf901635b1ca9293e4c725f06e01fedaa1da6
x86_64_v2 nginx-1.26.3-6.el10_2.6.x86_64_v2.rpm 9aef8c594e11bee61bce014aba925d26f1706d325a2307c7ea3dfd83b6a0d984
x86_64_v2 nginx-mod-http-xslt-filter-1.26.3-6.el10_2.6.x86_64_v2.rpm a7353db721d03132a98c440eb4ffae49f0cdb5e870e8d45e121470e4e34ceb3c
x86_64_v2 nginx-mod-mail-1.26.3-6.el10_2.6.x86_64_v2.rpm b3a48fd22613dc9aaad09fb5caa45bd95b97de3cbc5725eb4887cfbdae08c009
x86_64_v2 nginx-core-1.26.3-6.el10_2.6.x86_64_v2.rpm b9991cb5d529414800e60ef962432003fea817a6b1d52cfed2162b8edb29c22e
x86_64_v2 nginx-mod-http-image-filter-1.26.3-6.el10_2.6.x86_64_v2.rpm bb845ba053ecd84d4233296adf0e215cb06b752b68659ff78354e8e597f3a504
x86_64_v2 nginx-mod-stream-1.26.3-6.el10_2.6.x86_64_v2.rpm fed1a89d39e328b940926f6d25122811471db926729d504a22a56eb178f3cb8e
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.