Ubuntu Security Update USN-7285-1: nginx vulnerability

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,786
Reaction score
74
Credits
-1,257
It was discovered that nginx incorrectly handled when multiple server blocks are configured to share the same IP address and port. An attacker could use this issue to use session resumption to bypass client certificate authentication requirements on these servers. This issue only affected Ubuntu 24.10. A buffer overflow and a null pointer deref was fixed in nginx rtmp module (#LP 1977718). This issue only affected Ubuntu 20.04 LTS and Ubuntu 22.04 LTS.

Continue reading...
 


Follow Linux.org

Members online


Top