-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 15 May 2026 14:05:41 +0000 Source: nginx Binary: nginx-common nginx-core nginx-dev nginx-doc nginx-full nginx-light Architecture: all Version: 1.22.1-9+deb12u7 Distribution: bookworm-security Urgency: medium Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Jan Mojžíš Description: nginx-common - small, powerful, scalable web/proxy server - common files nginx-core - nginx web/proxy server (standard version) nginx-dev - nginx web/proxy server - development headers nginx-doc - small, powerful, scalable web/proxy server - documentation nginx-full - nginx web/proxy server (standard version with 3rd parties) nginx-light - nginx web/proxy server (basic version) Changes: nginx (1.22.1-9+deb12u7) bookworm-security; urgency=medium . * backport changes from upstream nginx,c buffer overflow in the ngx_http_rewrite_module (CVE-2026-42945), buffer overread in the ngx_http_scgi_module and ngx_http_uwsgi_module (CVE-2026-42946), resolver use-after-free in OCSP (CVE-2026-40701), buffer overread in the ngx_http_charset_module (CVE-2026-42934) * d/p/CVE-2026-42945.patch add * d/p/CVE-2026-42946.patch add * d/p/CVE-2026-40701.patch add * d/p/CVE-2026-42934.patch add Checksums-Sha1: cb6b6d7a021909a802f13f0078b3098e2644391d 114192 nginx-common_1.22.1-9+deb12u7_all.deb 5f85aa57c6ec9254b4c99dd089c0df199d0192da 80684 nginx-core_1.22.1-9+deb12u7_all.deb 09b265a09073b617c7c5ecf335768a6aefe55f3c 177232 nginx-dev_1.22.1-9+deb12u7_all.deb e970ead8f20703ddfdceca7538df5baf9a964db8 88744 nginx-doc_1.22.1-9+deb12u7_all.deb 3e105d9edd3bc8723733849f111727ec5327b4f4 80752 nginx-full_1.22.1-9+deb12u7_all.deb 5edafada6faba93383787d54f9f35a104c11d9b7 80456 nginx-light_1.22.1-9+deb12u7_all.deb 44a8006476101994ba09d4f4eca9657da34856b6 10136 nginx_1.22.1-9+deb12u7_all-buildd.buildinfo Checksums-Sha256: 693e802c4f10e3503aa4133720836f75302873fe4c20ef1275b2b72d1313830e 114192 nginx-common_1.22.1-9+deb12u7_all.deb 7f7e0fb4c951874c628dffbdcbf2c3e30fa7beb03e34cdfb5aaf5ecb61e3d039 80684 nginx-core_1.22.1-9+deb12u7_all.deb 7312e7535b429869e944baf2db7e8c408b3642232364b706385e8fe304959f91 177232 nginx-dev_1.22.1-9+deb12u7_all.deb 1f9aba28c562cc0dd51e19364be0630579e97ca5b99963fba668c316f010b852 88744 nginx-doc_1.22.1-9+deb12u7_all.deb 95958552dafb55a3bc10f2d863f818d6b72cf1b2724f37927f5ece9a13e47880 80752 nginx-full_1.22.1-9+deb12u7_all.deb 5fb9e6388a7f0bb0b48244d2825996771448b9d18ef791a3546576942992775c 80456 nginx-light_1.22.1-9+deb12u7_all.deb f708a4bce001f97146eeaeab4939e60d9a7ce3d5d9576591bc5b22018e60f2ff 10136 nginx_1.22.1-9+deb12u7_all-buildd.buildinfo Files: ba77d27bc1572c919ffa4175789509d6 114192 httpd optional nginx-common_1.22.1-9+deb12u7_all.deb 3a4490ca16c28c4f91ca1b1ecf05c63b 80684 httpd optional nginx-core_1.22.1-9+deb12u7_all.deb ffcd7f5d15fc26e8ff63838ca68c3423 177232 httpd optional nginx-dev_1.22.1-9+deb12u7_all.deb caf363d4918ac04986907cea25edf4f4 88744 doc optional nginx-doc_1.22.1-9+deb12u7_all.deb 2d6b24e3e8754a55ea0398e70751cc9c 80752 httpd optional nginx-full_1.22.1-9+deb12u7_all.deb 043a976e0a5f4dbffbf1495a6d3d8c33 80456 httpd optional nginx-light_1.22.1-9+deb12u7_all.deb ee7359d2d99bf6729ebbcc8258f11453 10136 httpd optional nginx_1.22.1-9+deb12u7_all-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE81O8NL+3kjBAqEvLmgPNRvTf/zcFAmoIC9YACgkQmgPNRvTf /zcHpg/7B/+N4BwA9FaSn/hPwc+yPcOOwF8URfs/mLhoXnL3/pLNdbpZIo2b6bP2 CMjUHWTkS/RwyfA2+XVTErS4vvOtQub1JiKPL2rp4h0htzKyDlnpb3hjLG+Ys2Hg 4emnFHJwZ4w1Uk5vj1s/K2nIxuwOebp2teRT9NcCtoLesYRhdDkS9x0VVs75IKEp +Na8GHj/WtEk71oSB2nfrb0GkrnwltyC8wwod90/q0rka3McO2X3n8539LE78cqL BGdMLPsSY7nTaWAIJdOzIByjgTgK1PhRyJ4AIzJjmRUisfvhnaYueHEc3al8RuGr LFs0I8k10CjphGuA5vpMMX/WdACTFZWTe2MClEsFRgmItmDXcF71jHStI1qAmAfS dNTunWIv2SkcDA7KZFfmuEVWsXcUL+1b/AvLGLfhBQHRMY3awWskQD11rKYqzzuT PBE+3AD8RjH5Dxe0NAtTUQ94o++kVzjLUfw4Lzit8OKyr+4Kej2mSWGcq3Azcsvy U7jpKourRkBPdqE2D8ie4NAKCTGDm6MTiBtP9JnjBl8FxfzZaR/2J5Pei7/zWIbb 0KY4phwHOp8LkM6zdLLtxy4E/XszxU9HjCfXTVIdoCZ1GT4EtbV2+cj2LJj+7MKb Qz0H7+PldugmVbWaZAtvLd1MFj/Z/zbSLovzx0Oz5Y+A/I43ybo= =+Rs4 -----END PGP SIGNATURE-----