[SUSE-SU-2023:0293-1] Security update for nginx

Severity Important
Affected Packages 5
CVEs 2

Security update for nginx

This update for nginx fixes the following issues:

  • CVE-2022-41741: Handle duplicated atoms in mp4 streams, to mitigate out-of-bound reads. (bsc#1204526)
  • CVE-2022-41742: Handle duplicated atoms in mp4 streams, to mitigate out-of-bound reads. (bsc#1204527)
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/nginx?arch=x86_64&distro=sles-15&sp=1 suse nginx < 1.16.1-150100.6.19.1 sles-15 x86_64
Affected pkg:rpm/suse/nginx?arch=s390x&distro=sles-15&sp=1 suse nginx < 1.16.1-150100.6.19.1 sles-15 s390x
Affected pkg:rpm/suse/nginx?arch=ppc64le&distro=sles-15&sp=1 suse nginx < 1.16.1-150100.6.19.1 sles-15 ppc64le
Affected pkg:rpm/suse/nginx?arch=aarch64&distro=sles-15&sp=1 suse nginx < 1.16.1-150100.6.19.1 sles-15 aarch64
Affected pkg:rpm/suse/nginx-source?arch=noarch&distro=sles-15&sp=1 suse nginx-source < 1.16.1-150100.6.19.1 sles-15 noarch
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...