Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 10 FEDORA-2009-9652 Moderate: Nginx Buffer Underflow Issue

fedora
Calendar Grey September 15, 2009
Dist Fedora Esm H88
Alert for Nginx on Fedora 10, addresses buffer overflow vulnerability. Use yum for secure installation.

Summary

Nginx [engine x] is an HTTP(S) server, HTTP(S) reverse proxy and IMAP/POP3

proxy server written by Igor Sysoev.

ChangeLog:

* Mon Sep 14 2009 Jeremy Hinegardner - 0.7.62-1

- update to 0.7.62

- fixes CVE-2009-2629

* Sun Aug 2 2009 Jeremy Hinegardner - 0.7.61-1

- update to new stable 0.7.61

- remove third party module

* Sat Apr 11 2009 Jeremy Hinegardner 0.6.36-1

- update to 0.6.36

* Wed Feb 25 2009 Fedora Release Engineering - 0.6.35-3

- Rebuilt for https://fedoraproject.org/wiki/Fedora_11_Mass_Rebuild

* Thu Feb 19 2009 Jeremy Hinegardner - 0.6.35-2

- rebuild

* Thu Feb 19 2009 Jeremy Hinegardner - 0.6.35-1

- update to 0.6.35

* Sat Jan 17 2009 Tomas Mraz - 0.6.34-2

- rebuild with new openssl

* Tue Dec 30 2008 Jeremy Hinegardner - 0.6.34-1

- update to 0.6.34

* Thu Dec 4 2008 Michael Schwendt - 0.6.33-2

- Fix inclusion of /usr/share/nginx tree => no unowned directories.

* Sun Nov 23 2008 Jeremy Hinegardner - 0.6.33-1

- update to 0.6.33

References:

[ 1 ] Bug #523105 - CVE-2009-2629 nginx: ngx_http_parse_complex_uri() buffer underflow vulnerability (VU#180065)

https://bugzilla.redhat.com/show_bug.cgi?id=523105

This update can be installed with the "yum" update program. Use

su -c 'yum update nginx' at the command line.

For more information, refer to "Managing Software with yum",

available at .

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
important
Lowest
Low
Medium
High
Critical

Name: nginx
Product: Fedora 10
Version: 0.7.62
Release: 1.fc10
Summary: Robust, small and high performance http and reverse proxy server

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here