Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia: 2019-0342 Moderate: Nginx Memory Consumption and CPU Usage

mageia
Calendar Grey November 30, 2019
Dist Mageia Esm H88
Revised nginx versions resolve vulnerabilities tied to heightened memory and processor consumption when managing HTTP/2 connections.
Updated nginx packages fix security vulnerabilities: When using HTTP/2 a client might cause excessive memory consumption and CPU usage (CVE-2019-9511, CVE-2019-9513, CVE-2019-9516...

Summary

Updated nginx packages fix security vulnerabilities:
When using HTTP/2 a client might cause excessive memory consumption and CPU usage (CVE-2019-9511, CVE-2019-9513, CVE-2019-9516).

References

- https://bugs.mageia.org/show_bug.cgi?id=25303

- https://nginx.org/en/CHANGES-1.16

- https://www.cve.org/CVERecord?id=CVE-2019-9511

- https://www.cve.org/CVERecord?id=CVE-2019-9513

- https://www.cve.org/CVERecord?id=CVE-2019-9516

Resolution

SRPMS

- 7/core/nginx-1.16.1-1.mga7

Publication date: 30 Nov 2019
URL: https://advisories.mageia.org/MGASA-2019-0342.html
Type: security
CVE: CVE-2019-9511, CVE-2019-9513, CVE-2019-9516

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here