[ELSA-2023-5713] nginx:1.22 security update

Severity Moderate
Affected Packages 9
CVEs 1

[1:1.22.1-1.0.1.1]
- Resolves: RHEL-12728 - nginx:1.22/nginx: HTTP/2: Multiple HTTP/2 enabled web
servers are vulnerable to a DDoS attack (Rapid Reset Attack)(CVE-2023-44487)

Package Affected Version
pkg:rpm/oraclelinux/nginx?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-stream?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-mail?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-http-xslt-filter?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-http-perl?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-http-image-filter?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-mod-devel?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-filesystem?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
pkg:rpm/oraclelinux/nginx-all-modules?distro=oraclelinux-8.8 < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1
ID
ELSA-2023-5713
Severity
moderate
URL
https://linux.oracle.com/errata/ELSA-2023-5713.html
Published
2023-10-17T00:00:00
(11 months ago)
Modified
2023-10-17T00:00:00
(11 months ago)
Rights
Copyright 2023 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/nginx?distro=oraclelinux-8.8 oraclelinux nginx < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-stream?distro=oraclelinux-8.8 oraclelinux nginx-mod-stream < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-mail?distro=oraclelinux-8.8 oraclelinux nginx-mod-mail < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-http-xslt-filter?distro=oraclelinux-8.8 oraclelinux nginx-mod-http-xslt-filter < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-http-perl?distro=oraclelinux-8.8 oraclelinux nginx-mod-http-perl < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-http-image-filter?distro=oraclelinux-8.8 oraclelinux nginx-mod-http-image-filter < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-mod-devel?distro=oraclelinux-8.8 oraclelinux nginx-mod-devel < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-filesystem?distro=oraclelinux-8.8 oraclelinux nginx-filesystem < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
Affected pkg:rpm/oraclelinux/nginx-all-modules?distro=oraclelinux-8.8 oraclelinux nginx-all-modules < 1.22.1-1.0.1.module+el8.8.0+21180+f87487ef.1 oraclelinux-8.8
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...