[ALSA-2026:59490] Important: nginx:1.24 security update
Type:
security
Severity:
important
Release date:
2026-08-26
Description:
nginx is a web and proxy server supporting HTTP and other protocols, with a focus on high concurrency, performance, and low memory usage. Security Fix(es): * nginx: NGINX: Heap buffer over-read allows memory modification or denial of service (CVE-2026-56434) * nginx: NGINX: Memory disclosure and denial of service in ngx_http_slice_module (CVE-2026-60005) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 nginx-mod-http-perl-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm 2863a2b7710287e57666dfb746435494ef7b54330b748cd78dc8f2191bfb5ae5
aarch64 nginx-mod-http-xslt-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm 84a897962183989843cdb441921a08113eb1572df1cebda631284cfacb5be59a
aarch64 nginx-mod-devel-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm 86e3daf2cdbc64bb1890d639c6c6e5420db6a1e7cf8391d49fde93c7afac7dc4
aarch64 nginx-mod-mail-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm a6a9d7686bd00303ca37db9d0e86bce95ead1f5013a67a4440bde9a6b734e9fd
aarch64 nginx-mod-stream-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm ab54959589c56fd5848c458cef00d248926b3405c9c522a349a1fe1d4641be0e
aarch64 nginx-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm ba2ae39322cf851fa88be93746bfe799e71883f2c2d4501037d7dfad41951359
aarch64 nginx-core-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm cd1ad4844c3db72ebbb190e535defd69d1452a8a9289003359b9d081c65d1318
aarch64 nginx-mod-http-image-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.aarch64.rpm e832dda7e977e6748396baef19f8e36ae04ce9eb9272e14d1a98efe11c8c8021
noarch nginx-filesystem-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.noarch.rpm a2d9495a2c4bbe3f98eda0d9d347366a0de4dc232f5f711e1b90aef137545042
noarch nginx-all-modules-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.noarch.rpm b9e4f0ea7748c335ee5b3d5aa3700c91386cb94d0229583370e5a806d21984d1
ppc64le nginx-mod-http-perl-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 22199225fa29e336960631c197e3877922c63b8ba45276e7419205714d244af7
ppc64le nginx-mod-stream-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 2731e180287304d587f0f85f8662ee04fe20d9d72df7ad32c839c1b79ccec59a
ppc64le nginx-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 2be12a4a2ba03816ce61a0eafb4ea8da8b241247cb7a636b5179f6013481cbe1
ppc64le nginx-mod-http-xslt-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 44baee60fc868c9f63894ac6ce496cfaa6746071d5e7c143c60cc6a329269adc
ppc64le nginx-mod-mail-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 788829f07cfe94308cf181a42278bd7fc510da6c0ebc282bb0e37cc8688750a2
ppc64le nginx-mod-http-image-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm 7d818d9ab8f3c261e5d28795f7b9d17659ee1aa521b6d8c54e11739c2d1e4c67
ppc64le nginx-mod-devel-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm eae430682b54633c06bbe09eafe4a706e94d257cc8eb4f0a2ebcba0f70cef05c
ppc64le nginx-core-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.ppc64le.rpm f07ac6eaec2dbdb23cac02c75e555c3c0ac9faa0772474041be88078fd498a74
s390x nginx-mod-http-xslt-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 02e359f9950641adc32b3e49d16b28a11181a672f0d10b682f84cabea0b5d624
s390x nginx-mod-http-perl-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 3290a44ea7e32dc733b25afe3f25358ca0da64ed63eaa13c116e05f0767cc9bb
s390x nginx-mod-mail-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 342ce90d1d1624bc9ce1eb3527be6d3cb236b7022b8f010bb9515e76874bb914
s390x nginx-mod-http-image-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 747052778af8935924ee99d0618f5d32697bbfc9fcd15c467195fc900d3755c5
s390x nginx-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 88828460cfdbeb47fdccd35ebd8161047a32ae54325db5936a8f18f0eb22bd12
s390x nginx-core-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm 9295cdae6dde913db8e693da4f66f4867821a4ae1ffde65a212de840449136c2
s390x nginx-mod-devel-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm d351ec3aa131e142369da7b1961cd56c581009855a365a3ddebde7e1e6d08904
s390x nginx-mod-stream-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.s390x.rpm eb792c5e21a83ceb95c9007ef1ef1faa865b8e507b3bbb33453de3e294da4607
x86_64 nginx-mod-devel-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 6937a2fc9e005f5348f5d74fc10f73ecab8ca0edb2765f3c80b8816ae3d90d18
x86_64 nginx-mod-mail-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 78c3d7633ad5700fa1705c40f5bacb650287cf2f240c11f7d41edde5c437ac69
x86_64 nginx-mod-http-image-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 7e3b16762591907b13af42cc573e596a833c6a73f49983aa3062b1c2ab3a428f
x86_64 nginx-mod-http-xslt-filter-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 855f64b9ec8e46ea4445625d2a61130a86f3aaa31e91e41434953fabe3d582ed
x86_64 nginx-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 8ca2c3a4ab1460fec35ccc98240dec799d0b82bf1bbf803cdb47bc7b3768808f
x86_64 nginx-core-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm 965ce1e4f7a208061aa6723becf903ef36d649c1849deb7243ddf259d9c8e7de
x86_64 nginx-mod-http-perl-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm a7418de61d0723a1118743fd05e770259d61a5a1d14f8c560b84773220d47e91
x86_64 nginx-mod-stream-1.24.0-7.module_el9.8.0+298+469955e3.4.alma.1.x86_64.rpm b054c338d1580217caf1fa689a09e27e583dbafda2d7f74d0cc9f4bfc6b817c4
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.