📰 IT Security NachrichtenHow A.I. Risks Are Splitting Silicon Valley and Washington(16.09.2026 um 03:24 Uhr)
📰 IT NachrichtenToday’s NYT Connections Hints and Answers for Sept. 16, #1193(16.09.2026 um 02:48 Uhr)
💾 IT Security Toolsmacnoise v1.0.0(16.09.2026 um 01:45 Uhr)
🔧 AI Nachrichten Rubrics-as-an-Attack-Surface(16.09.2026 um 02:15 Uhr)
🔧 AI Nachrichten INTACT(16.09.2026 um 02:45 Uhr)
📰 IT Security NachrichtenHow A.I. Risks Are Splitting Silicon Valley and Washington(16.09.2026 um 03:24 Uhr)
📰 IT NachrichtenToday’s NYT Connections Hints and Answers for Sept. 16, #1193(16.09.2026 um 02:48 Uhr)
💾 IT Security Toolsmacnoise v1.0.0(16.09.2026 um 01:45 Uhr)
🔧 AI Nachrichten Rubrics-as-an-Attack-Surface(16.09.2026 um 02:15 Uhr)
🔧 AI Nachrichten INTACT(16.09.2026 um 02:45 Uhr)

🐧 Unix Server 🕛 vor 1 Monat 1 Min Lesezeit CVE-2026-42533
0

USN-8563-2: nginx regression

Cyber Threat & Vulnerability Dossier CVSS 5.8 MEDIUM (Heuristik) EPSS 3.7%
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
⛔ Dienstausfall (DoS) / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen
↗ Quelle (ubuntu.com)
🗣️ Stimme:
USN-8563-1 fixed vulnerabilities in nginx. One of the fixes introduced ABI
changes that could cause issues with external modules. This update reverts
the fix for CVE-2026-42533 pending further investigation.

We apologize for the inconvenience.

Original advisory details:

It was discovered that nginx incorrectly handled certain map directives
using regex matching and capture variables. A remote attacker could use
this issue to cause nginx to crash, resulting in a denial of service, or
possibly execute arbitrary code. (CVE-2026-42533)

It was discovered that nginx had a use-after-free vulnerability in the
ngx_http_ssi_module module when configured with Server-Side Includes,
proxy_pass, and proxy buffering disabled directives. An attacker able to
intercept traffic and control responses from an upstream server could
possibly use this issue to cause nginx to crash, resulting in a denial of
service. (CVE-2026-56434)

It was discovered that nginx incorrectly handled certain requests in the
ngx_http_slice_module module. A remote attacker could possibly use this
issue to obtain sensitive information or cause nginx to crash, resulting
in a denial of service. (CVE-2026-60005)
Vollständiger Original-Artikel
Den kompletten Beitrag mit allen Details direkt auf ubuntu.com lesen.
↗ Original-Artikel auf ubuntu.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
What If AI Had a Digital Endocrine System?
1 Quelle
My AWS Learning Journey: CloudWatch, Lambda, IAM & CloudFront
1 Quelle
Flint: Turning Skills into Personal Assets
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten USN-8563-2: nginx regression

Thematisch verwandte Begriffe: USN85632, nginx, regression · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...