gpp_maybe Security update for nginx
SUSE-SLES-16.0-1343


This update for nginx fixes the following issues - CVE-2026-40460: bypass of authorization and bypass of rate limiting when NGINX is configured to use the HTTP/3 QUIC module (bsc#1265228). - CVE-2026-42055: heap-based buffer overflow in the ngx_http_proxy_v2_module and ngx_http_grpc_module modules (bsc#1268492). - CVE-2026-48142: heap buffer over-read in the ngx_http_charset_module module (bsc#1268495). - HTTP2-BOMB denial of service (bsc#1267525).


cloud_download Downloads

SUSE Linux Enterprise Server 16.0 aarch64
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm
SUSE Linux Enterprise Server 16.0 ppc64le
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm
SUSE Linux Enterprise Server 16.0 s390x
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm
SUSE Linux Enterprise Server 16.0 x86_64
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64
  • Packages
    nginx
    A HTTP server and IMAP/POP3 proxy server
    1.27.2-160000.6.1 lock rpm
    nginx-source
    The nginx source
    1.27.2-160000.6.1 lock rpm