Debian 11029 Published by

Debian and Freexian issued a series of security advisories to patch critical flaws across Linux kernels, Thunderbird, Nginx, Redis, and libheif on multiple Debian releases. The kernel updates for versions 6.1 and 6.12 address dozens of common vulnerabilities that could allow attackers to escalate privileges, leak memory, or crash systems. Separate advisories cover remote code execution risks in Thunderbird and Nginx, a heap overflow in the Redis RESTORE command, and memory safety issues in the libheif image decoder. System administrators should manually install the updated packages through their package managers to apply these fixes immediately.

[DLA 4724-1] linux-6.12 new package
[DLA 4723-1] linux-6.1 security update
ELA-1796-1 linux-6.1 security update (by )
ELA-1795-1 redis security update (by )
[DSA 6417-1] libheif security update
[DSA 6418-1] thunderbird security update
ELA-1797-1 nginx security update (by )




[SECURITY] [DLA 4724-1] linux-6.12 new package


-------------------------------------------------------------------------
Debian LTS Advisory DLA-4724-1 debian-lts@lists.debian.org
https://www.debian.org/lts/security/ Ben Hutchings
August 07, 2026 https://wiki.debian.org/LTS
-------------------------------------------------------------------------

Package : linux-6.12
Version : 6.12.100-1~deb12u1
CVE ID : CVE-2025-21807 CVE-2026-45944 CVE-2026-46093 CVE-2026-53005
CVE-2026-53027 CVE-2026-53226 CVE-2026-53260 CVE-2026-53365
CVE-2026-53392 CVE-2026-53399 CVE-2026-53402 CVE-2026-63815
CVE-2026-63816 CVE-2026-63818 CVE-2026-63970 CVE-2026-64187
CVE-2026-64189 CVE-2026-64192 CVE-2026-64206 CVE-2026-64227
CVE-2026-64241 CVE-2026-64256 CVE-2026-64265 CVE-2026-64266
CVE-2026-64268 CVE-2026-64269 CVE-2026-64270 CVE-2026-64271
CVE-2026-64272 CVE-2026-64273 CVE-2026-64274 CVE-2026-64275
CVE-2026-64276 CVE-2026-64277 CVE-2026-64279 CVE-2026-64284
CVE-2026-64286 CVE-2026-64287 CVE-2026-64289 CVE-2026-64294
CVE-2026-64296 CVE-2026-64297 CVE-2026-64298 CVE-2026-64299
CVE-2026-64301 CVE-2026-64303 CVE-2026-64304 CVE-2026-64305
CVE-2026-64306 CVE-2026-64307 CVE-2026-64308 CVE-2026-64309
CVE-2026-64310 CVE-2026-64312 CVE-2026-64313 CVE-2026-64315
CVE-2026-64316 CVE-2026-64317 CVE-2026-64318 CVE-2026-64319
CVE-2026-64320 CVE-2026-64321 CVE-2026-64322 CVE-2026-64323
CVE-2026-64324 CVE-2026-64326 CVE-2026-64327 CVE-2026-64328
CVE-2026-64329 CVE-2026-64330 CVE-2026-64331 CVE-2026-64332
CVE-2026-64333 CVE-2026-64334 CVE-2026-64335 CVE-2026-64336
CVE-2026-64337 CVE-2026-64338 CVE-2026-64340 CVE-2026-64341
CVE-2026-64342 CVE-2026-64343 CVE-2026-64344 CVE-2026-64345
CVE-2026-64346 CVE-2026-64347 CVE-2026-64348 CVE-2026-64350
CVE-2026-64351 CVE-2026-64352 CVE-2026-64354 CVE-2026-64355
CVE-2026-64357 CVE-2026-64358 CVE-2026-64359 CVE-2026-64360
CVE-2026-64361 CVE-2026-64362 CVE-2026-64363 CVE-2026-64364
CVE-2026-64365 CVE-2026-64367 CVE-2026-64368 CVE-2026-64369
CVE-2026-64370 CVE-2026-64371 CVE-2026-64372 CVE-2026-64373
CVE-2026-64374 CVE-2026-64375 CVE-2026-64376 CVE-2026-64377
CVE-2026-64378 CVE-2026-64379 CVE-2026-64380 CVE-2026-64381
CVE-2026-64382 CVE-2026-64383 CVE-2026-64384 CVE-2026-64385
CVE-2026-64386 CVE-2026-64387 CVE-2026-64390 CVE-2026-64391
CVE-2026-64392 CVE-2026-64393 CVE-2026-64394 CVE-2026-64395
CVE-2026-64396 CVE-2026-64397 CVE-2026-64398 CVE-2026-64399
CVE-2026-64401 CVE-2026-64402 CVE-2026-64403 CVE-2026-64404
CVE-2026-64405 CVE-2026-64406 CVE-2026-64407 CVE-2026-64408
CVE-2026-64409 CVE-2026-64411 CVE-2026-64412 CVE-2026-64413
CVE-2026-64414 CVE-2026-64415 CVE-2026-64416 CVE-2026-64417
CVE-2026-64418 CVE-2026-64419 CVE-2026-64420 CVE-2026-64421
CVE-2026-64422 CVE-2026-64423 CVE-2026-64424 CVE-2026-64425
CVE-2026-64428 CVE-2026-64429 CVE-2026-64430 CVE-2026-64432
CVE-2026-64433 CVE-2026-64434 CVE-2026-64435 CVE-2026-64436
CVE-2026-64437 CVE-2026-64438 CVE-2026-64440 CVE-2026-64441
CVE-2026-64442 CVE-2026-64443 CVE-2026-64444 CVE-2026-64445
CVE-2026-64446 CVE-2026-64448 CVE-2026-64449 CVE-2026-64450
CVE-2026-64452 CVE-2026-64454 CVE-2026-64455 CVE-2026-64456
CVE-2026-64457 CVE-2026-64458 CVE-2026-64461 CVE-2026-64462
CVE-2026-64463 CVE-2026-64465 CVE-2026-64468 CVE-2026-64469
CVE-2026-64470 CVE-2026-64471 CVE-2026-64472 CVE-2026-64473
CVE-2026-64474 CVE-2026-64475 CVE-2026-64476 CVE-2026-64477
CVE-2026-64478 CVE-2026-64479 CVE-2026-64480 CVE-2026-64481
CVE-2026-64482 CVE-2026-64483 CVE-2026-64484 CVE-2026-64486
CVE-2026-64487 CVE-2026-64488 CVE-2026-64489 CVE-2026-64490
CVE-2026-64493 CVE-2026-64494 CVE-2026-64495 CVE-2026-64496
CVE-2026-64497 CVE-2026-64499 CVE-2026-64500 CVE-2026-64503
CVE-2026-64504 CVE-2026-64505 CVE-2026-64507 CVE-2026-64508
CVE-2026-64509 CVE-2026-64510 CVE-2026-64511 CVE-2026-64512
CVE-2026-64514 CVE-2026-64530 CVE-2026-64531 CVE-2026-64532
CVE-2026-64533 CVE-2026-64534 CVE-2026-64535 CVE-2026-64536
CVE-2026-64537 CVE-2026-64538 CVE-2026-64539 CVE-2026-64540
CVE-2026-64541 CVE-2026-64542 CVE-2026-64543 CVE-2026-64544
CVE-2026-64545 CVE-2026-64546 CVE-2026-64547 CVE-2026-64548
CVE-2026-64549 CVE-2026-64550 CVE-2026-64551 CVE-2026-64552
CVE-2026-64553 CVE-2026-64554 CVE-2026-64555 CVE-2026-64556
CVE-2026-64557 CVE-2026-64558 CVE-2026-64559 CVE-2026-64560
CVE-2026-64582 CVE-2026-64585 CVE-2026-64589 CVE-2026-64590
CVE-2026-64592 CVE-2026-64593 CVE-2026-64594 CVE-2026-64597
CVE-2026-64598 CVE-2026-64599 CVE-2026-64600 CVE-2026-64602
CVE-2026-64603 CVE-2026-64604
Debian Bug : 1130336 1140651

Linux 6.12 has been packaged for Debian 12 "bookworm" as linux-6.12.
This provides a supported upgrade path for systems that currently use
kernel packages from the "bookworm-backports" suite.

There is no need to upgrade systems using Linux 6.1, as that kernel
version will also continue to be supported in the LTS period.

The "apt full-upgrade" command will *not* automatically install the
updated kernel packages. You should explicitly install one of the
following metapackages first, as appropriate for your system:

linux-image-6.12-amd64
linux-image-6.12-arm64
linux-image-6.12-arm64-16k
linux-image-6.12-armmp
linux-image-6.12-armmp-lpae
linux-image-6.12-cloud-amd64
linux-image-6.12-cloud-arm64
linux-image-6.12-powerpc64le
linux-image-6.12-powerpc64le-64k
linux-image-6.12-rt-amd64
linux-image-6.12-rt-arm64
linux-image-6.12-rt-armmp

For example, if the command "uname -r" currently shows
"6.12.95+deb12-amd64", you should install linux-image-6.12-amd64.

This backport does not include the following binary packages:

bpftool hyperv-daemons intel-sdsi libcpupower-dev libcpupower1
linux-cpupower linux-libc-dev linux-perf rtla usbip

Older versions of most of those are built from the linux source
package in Debian 12.

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation, denial of service or information
leaks.

For Debian 12 bookworm, these problems have been fixed in version
6.12.100-1~deb12u1. This update also fixes several bugs reported to
Debian. It additionally includes many more bug fixes from stable
updates 6.12.96-6.12.100.

We recommend that you upgrade your linux-6.12 packages.

For the detailed security status of linux-6.12 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/linux-6.12

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



[SECURITY] [DLA 4723-1] linux-6.1 security update



- -------------------------------------------------------------------------
Debian LTS Advisory DLA-4723-1 debian-lts@lists.debian.org
https://www.debian.org/lts/security/ Emilio Pozuelo Monfort
August 07, 2026 https://wiki.debian.org/LTS
- -------------------------------------------------------------------------

Package : linux-6.1
Version : 6.1.180-1~deb11u1
CVE ID : CVE-2024-36013 CVE-2025-40196 CVE-2026-31610 CVE-2026-43216
CVE-2026-46135 CVE-2026-53332 CVE-2026-53392 CVE-2026-53393
CVE-2026-53399 CVE-2026-53400 CVE-2026-53402 CVE-2026-63797
CVE-2026-63806 CVE-2026-63810 CVE-2026-63815 CVE-2026-63818
CVE-2026-63829 CVE-2026-64187 CVE-2026-64189 CVE-2026-64206
CVE-2026-64248 CVE-2026-64250 CVE-2026-64266 CVE-2026-64268
CVE-2026-64269 CVE-2026-64271 CVE-2026-64273 CVE-2026-64274
CVE-2026-64275 CVE-2026-64276 CVE-2026-64277 CVE-2026-64279
CVE-2026-64296 CVE-2026-64297 CVE-2026-64298 CVE-2026-64299
CVE-2026-64301 CVE-2026-64303 CVE-2026-64304 CVE-2026-64306
CVE-2026-64312 CVE-2026-64313 CVE-2026-64315 CVE-2026-64316
CVE-2026-64317 CVE-2026-64318 CVE-2026-64322 CVE-2026-64323
CVE-2026-64324 CVE-2026-64329 CVE-2026-64330 CVE-2026-64331
CVE-2026-64332 CVE-2026-64333 CVE-2026-64334 CVE-2026-64335
CVE-2026-64336 CVE-2026-64337 CVE-2026-64338 CVE-2026-64340
CVE-2026-64342 CVE-2026-64343 CVE-2026-64344 CVE-2026-64346
CVE-2026-64347 CVE-2026-64350 CVE-2026-64351 CVE-2026-64352
CVE-2026-64355 CVE-2026-64359 CVE-2026-64360 CVE-2026-64361
CVE-2026-64362 CVE-2026-64363 CVE-2026-64364 CVE-2026-64365
CVE-2026-64370 CVE-2026-64371 CVE-2026-64372 CVE-2026-64373
CVE-2026-64374 CVE-2026-64375 CVE-2026-64376 CVE-2026-64378
CVE-2026-64379 CVE-2026-64380 CVE-2026-64381 CVE-2026-64390
CVE-2026-64393 CVE-2026-64394 CVE-2026-64395 CVE-2026-64396
CVE-2026-64397 CVE-2026-64398 CVE-2026-64399 CVE-2026-64401
CVE-2026-64403 CVE-2026-64406 CVE-2026-64408 CVE-2026-64409
CVE-2026-64411 CVE-2026-64412 CVE-2026-64413 CVE-2026-64417
CVE-2026-64419 CVE-2026-64420 CVE-2026-64422 CVE-2026-64423
CVE-2026-64425 CVE-2026-64428 CVE-2026-64429 CVE-2026-64430
CVE-2026-64432 CVE-2026-64435 CVE-2026-64436 CVE-2026-64437
CVE-2026-64438 CVE-2026-64440 CVE-2026-64441 CVE-2026-64442
CVE-2026-64443 CVE-2026-64444 CVE-2026-64445 CVE-2026-64446
CVE-2026-64448 CVE-2026-64449 CVE-2026-64450 CVE-2026-64452
CVE-2026-64454 CVE-2026-64455 CVE-2026-64456 CVE-2026-64458
CVE-2026-64461 CVE-2026-64462 CVE-2026-64465 CVE-2026-64468
CVE-2026-64469 CVE-2026-64470 CVE-2026-64471 CVE-2026-64472
CVE-2026-64475 CVE-2026-64476 CVE-2026-64478 CVE-2026-64480
CVE-2026-64482 CVE-2026-64483 CVE-2026-64484 CVE-2026-64486
CVE-2026-64487 CVE-2026-64488 CVE-2026-64489 CVE-2026-64494
CVE-2026-64495 CVE-2026-64496 CVE-2026-64497 CVE-2026-64500
CVE-2026-64503 CVE-2026-64504 CVE-2026-64505 CVE-2026-64510
CVE-2026-64512 CVE-2026-64514 CVE-2026-64530 CVE-2026-64531
CVE-2026-64532 CVE-2026-64533 CVE-2026-64534 CVE-2026-64535
CVE-2026-64536 CVE-2026-64537 CVE-2026-64538 CVE-2026-64539
CVE-2026-64540 CVE-2026-64541 CVE-2026-64544 CVE-2026-64545
CVE-2026-64546 CVE-2026-64547 CVE-2026-64548 CVE-2026-64549
CVE-2026-64550 CVE-2026-64551 CVE-2026-64552 CVE-2026-64553
CVE-2026-64554 CVE-2026-64557 CVE-2026-64560 CVE-2026-64600

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation, denial of service or information
leaks.

For Debian 11 bullseye, these problems have been fixed in version
6.1.180-1~deb11u1. This version additionally includes many more bug fixes
from stable update 6.1.178-6.1.180.

We recommend that you upgrade your linux-6.1 packages.

For the detailed security status of linux-6.1 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/linux-6.1

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

ELA-1796-1 linux-6.1 security update (by )


Package : linux-6.1

Version : 6.1.180-1~deb9u1 (stretch), 6.1.180-1~deb10u1 (buster)

Related CVEs :
CVE-2024-36013
CVE-2025-40196
CVE-2026-31610
CVE-2026-43216
CVE-2026-46135
CVE-2026-53332
CVE-2026-53392
CVE-2026-53393
CVE-2026-53399
CVE-2026-53400
CVE-2026-53402
CVE-2026-63797
CVE-2026-63806
CVE-2026-63810
CVE-2026-63815
CVE-2026-63818
CVE-2026-63829
CVE-2026-64187
CVE-2026-64189
CVE-2026-64206
CVE-2026-64248
CVE-2026-64250
CVE-2026-64266
CVE-2026-64268
CVE-2026-64269
CVE-2026-64271
CVE-2026-64273
CVE-2026-64274
CVE-2026-64275
CVE-2026-64276
CVE-2026-64277
CVE-2026-64279
CVE-2026-64296
CVE-2026-64297
CVE-2026-64298
CVE-2026-64299
CVE-2026-64301
CVE-2026-64303
CVE-2026-64304
CVE-2026-64306
CVE-2026-64312
CVE-2026-64313
CVE-2026-64315
CVE-2026-64316
CVE-2026-64317
CVE-2026-64318
CVE-2026-64322
CVE-2026-64323
CVE-2026-64324
CVE-2026-64329
CVE-2026-64330
CVE-2026-64331
CVE-2026-64332
CVE-2026-64333
CVE-2026-64334
CVE-2026-64335
CVE-2026-64336
CVE-2026-64337
CVE-2026-64338
CVE-2026-64340
CVE-2026-64342
CVE-2026-64343
CVE-2026-64344
CVE-2026-64346
CVE-2026-64347
CVE-2026-64350
CVE-2026-64351
CVE-2026-64352
CVE-2026-64355
CVE-2026-64359
CVE-2026-64360
CVE-2026-64361
CVE-2026-64362
CVE-2026-64363
CVE-2026-64364
CVE-2026-64365
CVE-2026-64370
CVE-2026-64371
CVE-2026-64372
CVE-2026-64373
CVE-2026-64374
CVE-2026-64375
CVE-2026-64376
CVE-2026-64378
CVE-2026-64379
CVE-2026-64380
CVE-2026-64381
CVE-2026-64390
CVE-2026-64393
CVE-2026-64394
CVE-2026-64395
CVE-2026-64396
CVE-2026-64397
CVE-2026-64398
CVE-2026-64399
CVE-2026-64401
CVE-2026-64403
CVE-2026-64406
CVE-2026-64408
CVE-2026-64409
CVE-2026-64411
CVE-2026-64412
CVE-2026-64413
CVE-2026-64417
CVE-2026-64419
CVE-2026-64420
CVE-2026-64422
CVE-2026-64423
CVE-2026-64425
CVE-2026-64428
CVE-2026-64429
CVE-2026-64430
CVE-2026-64432
CVE-2026-64435
CVE-2026-64436
CVE-2026-64437
CVE-2026-64438
CVE-2026-64440
CVE-2026-64441
CVE-2026-64442
CVE-2026-64443
CVE-2026-64444
CVE-2026-64445
CVE-2026-64446
CVE-2026-64448
CVE-2026-64449
CVE-2026-64450
CVE-2026-64452
CVE-2026-64454
CVE-2026-64455
CVE-2026-64456
CVE-2026-64458
CVE-2026-64461
CVE-2026-64462
CVE-2026-64465
CVE-2026-64468
CVE-2026-64469
CVE-2026-64470
CVE-2026-64471
CVE-2026-64472
CVE-2026-64475
CVE-2026-64476
CVE-2026-64478
CVE-2026-64480
CVE-2026-64482
CVE-2026-64483
CVE-2026-64484
CVE-2026-64486
CVE-2026-64487
CVE-2026-64488
CVE-2026-64489
CVE-2026-64494
CVE-2026-64495
CVE-2026-64496
CVE-2026-64497
CVE-2026-64500
CVE-2026-64503
CVE-2026-64504
CVE-2026-64505
CVE-2026-64510
CVE-2026-64512
CVE-2026-64514
CVE-2026-64530
CVE-2026-64531
CVE-2026-64532
CVE-2026-64533
CVE-2026-64534
CVE-2026-64535
CVE-2026-64536
CVE-2026-64537
CVE-2026-64538
CVE-2026-64539
CVE-2026-64540
CVE-2026-64541
CVE-2026-64544
CVE-2026-64545
CVE-2026-64546
CVE-2026-64547
CVE-2026-64548
CVE-2026-64549
CVE-2026-64550
CVE-2026-64551
CVE-2026-64552
CVE-2026-64553
CVE-2026-64554
CVE-2026-64557
CVE-2026-64560
CVE-2026-64600

Several vulnerabilities have been discovered in the Linux kernel that
may lead to a privilege escalation, denial of service or information
leaks.
This version additionally includes many more bug fixes
from stable update 6.1.178-6.1.180.


ELA-1796-1 linux-6.1 security update (by )



ELA-1795-1 redis security update (by )


Package : redis

Version : 5:5.0.14-1+deb10u11 (buster)

Related CVEs :
CVE-2026-66373

Fix a potential remote-code execution vulnerability in Redis, the key-value
database.
In the unusual case where an authenticated attacker could execute the RESTORE
command, a malicious RESTORE payload could have resulted in a double-free.


ELA-1795-1 redis security update (by )



[SECURITY] [DSA 6417-1] libheif security update



- -------------------------------------------------------------------------
Debian Security Advisory DSA-6417-1 security@debian.org
https://www.debian.org/security/ Aron Xu
August 08, 2026 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : libheif
CVE ID : CVE-2025-68431 CVE-2026-32740 CVE-2026-32741 CVE-2026-32882
CVE-2026-47178 CVE-2026-47247 CVE-2026-47709 CVE-2026-47714
CVE-2026-48029 CVE-2026-49271 CVE-2026-62289 CVE-2026-62292
Debian Bug :

Multiple security issues were discovered in libheif, an ISO/IEC 23008-12
HEIF and AVIF image file format decoder and encoder, which may result in
denial of service, the disclosure of sensitive memory contents or,
potentially, the execution of arbitrary code if a malformed image file is
processed.

Note that in the fix for CVE-2026-47178, a heap out-of-bounds write in the
uncompressed tile decoder, the affected format combinations are now rejected
with heif_error_Unsupported_feature: uncompressed images with 4:2:0 or 4:2:2
chroma subsampling that are tiled, or that use row or pixel interleave.
Upstream corrected the offending arithmetic, but only after a restructuring
of the uncompressed decoder that is not present in the version shipped in
the stable distribution. Images in these configurations will no longer
decode.

For the stable distribution (trixie), these problems have been fixed in
version 1.19.8-1+deb13u1.

We recommend that you upgrade your libheif packages.

For the detailed security status of libheif please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/libheif

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/


[SECURITY] [DSA 6418-1] thunderbird security update



- -------------------------------------------------------------------------
Debian Security Advisory DSA-6418-1 security@debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
August 07, 2026 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : thunderbird
CVE ID : CVE-2026-14899 CVE-2026-15718 CVE-2026-15719 CVE-2026-16349
CVE-2026-16350 CVE-2026-16351 CVE-2026-16352 CVE-2026-16353
CVE-2026-16354 CVE-2026-16355 CVE-2026-16356 CVE-2026-16357
CVE-2026-16358 CVE-2026-16359 CVE-2026-16360 CVE-2026-16361
CVE-2026-16362 CVE-2026-16363 CVE-2026-16368 CVE-2026-16369
CVE-2026-16371 CVE-2026-16374 CVE-2026-16375 CVE-2026-16377
CVE-2026-16379 CVE-2026-16381 CVE-2026-16383 CVE-2026-16387
CVE-2026-16390 CVE-2026-16391 CVE-2026-16396 CVE-2026-16405
CVE-2026-16412 CVE-2026-57962 CVE-2026-57963

Multiple security issues were discovered in Thunderbird, which could
result in the execution of arbitrary code.

For the stable distribution (trixie), these problems have been fixed in
version 1:140.13.0esr-2~deb13u1.

We recommend that you upgrade your thunderbird packages.

For the detailed security status of thunderbird please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/thunderbird

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/


ELA-1797-1 nginx security update (by )


Package : nginx

Version : 1.14.2-2+deb10u8 (buster)

Related CVEs :
CVE-2026-42055
CVE-2026-48142
TEMP-1138794-BADE22

Multiple vulnerabilities were discoverd in Nginx, a high-performance web
and reverse proxy server, which could result in remote code execution,
denial of service or memory disclosure.

CVE-2026-42055

NGINX Open Source has a vulnerability in the ngx_http_proxy_v2_module and
ngx_http_grpc_module modules. This vulnerability exists when the
proxy_http_version to 2 or grpc_pass directives are used to proxy HTTP/2
traffic, the ignore_invalid_headers directive is set to off, and the
large_client_header_buffers directive size is larger than 2 megabytes. A
remote, unauthenticated attacker, along with conditions beyond their
control, could send large headers while creating an upstream request. This
may cause a heap-based buffer overflow in the NGINX worker process leading
to a restart. Additionally, attackers can execute code on systems with
Address Space Layout Randomization (ASLR) disabled or when the attacker can
bypass ASLR.

CVE-2026-48142

NGINX Open Source has a vulnerability in the ngx_http_charset_module module.
When content is served or proxied through a location block with both
source_charset utf-8; and a charset directive (for example, charset koi8-r;)
configured, remote, unauthenticated attackers can send requests (in
conjunction with conditions beyond their control) to cause a heap buffer
over-read in the NGINX worker process, leading to limited disclosure of
memory or a restart.

No CVE assigned yet

HTTP/2 Bomb denial of service.


ELA-1797-1 nginx security update (by )