gpp_maybe Security update for nghttp2
SUSE-SLE-Micro-5.5-2026-1247


This update for nghttp2 fixes the following issue: - CVE-2026-27135: assertion failure due to missing state validation can lead to DoS (bsc#1259845).

  • Release Date
    Apr 10 2026
  • References
    Bugzilla: 1259845
    CVEs: CVE-2026-27135
  • Type
    security
  • Severity
    important

cloud_download Downloads

SUSE Linux Enterprise Micro 5.5 aarch64
  • Packages
    libnghttp2-14
    Shared library for nghttp2
    1.40.0-150200.22.1 lock rpm
    nghttp2
    Implementation of Hypertext Transfer Protocol version 2 in C
    1.40.0-150200.22.1 lock src
SUSE Linux Enterprise Micro 5.5 ppc64le
  • Packages
    libnghttp2-14
    Shared library for nghttp2
    1.40.0-150200.22.1 lock rpm
    nghttp2
    Implementation of Hypertext Transfer Protocol version 2 in C
    1.40.0-150200.22.1 lock src
SUSE Linux Enterprise Micro 5.5 s390x
  • Packages
    libnghttp2-14
    Shared library for nghttp2
    1.40.0-150200.22.1 lock rpm
    nghttp2
    Implementation of Hypertext Transfer Protocol version 2 in C
    1.40.0-150200.22.1 lock src
SUSE Linux Enterprise Micro 5.5 x86_64
  • Packages
    libnghttp2-14
    Shared library for nghttp2
    1.40.0-150200.22.1 lock rpm
    nghttp2
    Implementation of Hypertext Transfer Protocol version 2 in C
    1.40.0-150200.22.1 lock src