[ALSA-2026:59362] Important: nginx security update
Type:
security
Severity:
important
Release date:
2026-08-26
Description:
nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage. Security Fix(es): * nginx: NGINX: Heap buffer over-read allows memory modification or denial of service (CVE-2026-56434) * nginx: NGINX: Memory disclosure and denial of service in ngx_http_slice_module (CVE-2026-60005) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 nginx-1.20.1-28.el9_8.5.alma.1.aarch64.rpm 0e17fd9ec1dbae59e065bde0ce9cfce64b9d9676d9582caccbb4e289580a6d11
aarch64 nginx-core-1.20.1-28.el9_8.5.alma.1.aarch64.rpm 0f471bf91558fa84ae2d1f9760eb0c06d7e643c3ce618c81f1dfed39c5b84184
aarch64 nginx-mod-mail-1.20.1-28.el9_8.5.alma.1.aarch64.rpm 328bd15ab9ea3c4c6458caab3449b43e86443e175d592b9708397c8ce0d2b4ec
aarch64 nginx-mod-devel-1.20.1-28.el9_8.5.alma.1.aarch64.rpm 61d742414408cacb243303924962df5a897e9ebde8233fe5c476f397c5df3107
aarch64 nginx-mod-http-xslt-filter-1.20.1-28.el9_8.5.alma.1.aarch64.rpm 80971c731a35eaacc723b70667536bc3b31a39772ec4346300580009b9eff2c5
aarch64 nginx-mod-http-image-filter-1.20.1-28.el9_8.5.alma.1.aarch64.rpm a6db9b03d2ad7b08dc1d8eb9e198e5561023438d546046e5dfe46461e08a68bf
aarch64 nginx-mod-stream-1.20.1-28.el9_8.5.alma.1.aarch64.rpm a94a8c49ffb44fe4febf89ef28f41c8fddb902e2d13466cf804a2f0090772c5b
aarch64 nginx-mod-http-perl-1.20.1-28.el9_8.5.alma.1.aarch64.rpm dfef67b4d36e73f917916bbf11201c9ce76dddeaa91fadae828ba00b4d107674
noarch nginx-filesystem-1.20.1-28.el9_8.5.alma.1.noarch.rpm 04836f924d852c9230a481032cc7d59ce5e0b6ac958a577f8b01db877f035330
noarch nginx-all-modules-1.20.1-28.el9_8.5.alma.1.noarch.rpm 546e0c4eabdfe1df61bc24bdb226ee059323da8db517161e7f4a0e8d9fd68933
ppc64le nginx-mod-http-xslt-filter-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 2223d463e2e8c28dc8514b7f421f6c50d8a9aacc0757f91a2832dab572105cc0
ppc64le nginx-mod-http-perl-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 2288b1cc58f649aa809abc61daaa5565323696f0efa9bf5d05dee51a64725672
ppc64le nginx-mod-stream-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 29f51589d2bcfcc27fb1e456787a3e7a87f702dfd34cc537a4f36ef80617636c
ppc64le nginx-core-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 3c85e875189266c1ff6555a57b061860c0e6369495560443fa5e81c21fa07499
ppc64le nginx-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 722e9fdf537bd5fe8d9fd00913b50dc1a564de3585a9b42ddf9f5f7748b4f730
ppc64le nginx-mod-mail-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 8de0fbbe8a1f77fbd5c206dec52e2b716541d9fadf3de119d3afc90728c35986
ppc64le nginx-mod-devel-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm 8fb3e5d56fca98ac8384503e09ddf40cfab0c9393cf5bc432ee569bdd3d8562e
ppc64le nginx-mod-http-image-filter-1.20.1-28.el9_8.5.alma.1.ppc64le.rpm c3e8d2a3415476d0d61a6fc03cdec53dc531e4dc0ed2817a6e0a9ade7eb04d97
s390x nginx-mod-mail-1.20.1-28.el9_8.5.alma.1.s390x.rpm 6296e01a60d253fc735deb5ef4706d3f3138b3fa054d7b66e31a4666c740067e
s390x nginx-mod-http-xslt-filter-1.20.1-28.el9_8.5.alma.1.s390x.rpm 70d6f4c698421790210c6e44dca51d58fe226aa959c762e69554f13c6ff458ab
s390x nginx-mod-devel-1.20.1-28.el9_8.5.alma.1.s390x.rpm 885693e73f9d27e677b1be33644f34ac208f751252f75c4c78757d4346bd4efd
s390x nginx-mod-http-image-filter-1.20.1-28.el9_8.5.alma.1.s390x.rpm a98f669de25e6966f689d27b783a4c53c2cae4e75a802f6ac8f1f2ddf8571ba5
s390x nginx-mod-http-perl-1.20.1-28.el9_8.5.alma.1.s390x.rpm c0dda5f48521c66157c003cfed0f6fc4543f827349dffd7efe55b120f1ed4cc2
s390x nginx-mod-stream-1.20.1-28.el9_8.5.alma.1.s390x.rpm cc5e809261b4878c6534f09db7f9d70618e95db5eceb4c4b35ad1396aec9a749
s390x nginx-core-1.20.1-28.el9_8.5.alma.1.s390x.rpm d826ae660f3720e9c593ece104a8376bbfc2ec6da0c46e47bcb9889d7d87374d
s390x nginx-1.20.1-28.el9_8.5.alma.1.s390x.rpm fd304f496f77287396b74509d10c1c491d256fde5ca888eefdb7a1a02e7a22c4
x86_64 nginx-mod-http-image-filter-1.20.1-28.el9_8.5.alma.1.x86_64.rpm 31adac9534d4c97c4b697ac07e4f3338499f15c5097479d83249c0083e7dbc81
x86_64 nginx-mod-stream-1.20.1-28.el9_8.5.alma.1.x86_64.rpm 43abb095d751093e2dda6166f3fc0fde3dac496d4217a4e027f4483981b548d5
x86_64 nginx-mod-http-xslt-filter-1.20.1-28.el9_8.5.alma.1.x86_64.rpm b282854e32ca85cb0b930a0780994ae8c69c1a69d74fb82b96d231e393850fb9
x86_64 nginx-core-1.20.1-28.el9_8.5.alma.1.x86_64.rpm c397d194169124ef5f1389964e0a1977867225f52f277e60cf856fd9b72643ae
x86_64 nginx-mod-devel-1.20.1-28.el9_8.5.alma.1.x86_64.rpm d2b472a21aacefc147c00d0e772a2a56930f447e780f4693f83525ca40c18f47
x86_64 nginx-mod-mail-1.20.1-28.el9_8.5.alma.1.x86_64.rpm d9a6c83b14c159051b8995d649c0be23a5a3449f36014cc9913cac13f5c0eb7c
x86_64 nginx-1.20.1-28.el9_8.5.alma.1.x86_64.rpm dc98d7c025846bc0942b99405573c00e81e427d515bcf4c9d7b76dbee71cf625
x86_64 nginx-mod-http-perl-1.20.1-28.el9_8.5.alma.1.x86_64.rpm f6eec441134374b4a9acb624f328941efb9271b89681fb000ada0381e72ccd0f
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.