ELSA-2020-5495

ELSA-2020-5495 - nginx:1.16 security update

Type:SECURITY
Impact:MODERATE
Release Date:2020-12-18

Description


[1:1.16.1-1.0.1.1]
- Remove Red Hat references [Orabug: 29498217]

[1:1.16.1-1.1]
- Resolves: #1898952 - CVE 2019-20372 nginx:1.16/nginx: HTTP request smuggling
via error pages in http/ngx_http_special_response.c


Related CVEs


CVE-2019-20372

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) nginx-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.src.rpm7d92a441ab3486d39c84d5a033cbe89e2e7ef27906369b4b9ffa3d657b2ad221-ol8_aarch64_appstream
nginx-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpm88c9c5521ff54c7c7c7d87fb94c135decb0c4e30db578ff981bcc5f08722ac28-ol8_aarch64_appstream
nginx-all-modules-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.noarch.rpm4732ca3c6292cf3fce59f75a18730424cabd3b40d1ea787fdc26c8f2df2cf7a3-ol8_aarch64_appstream
nginx-filesystem-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.noarch.rpma106422c1cf9b0afaa5bd9f99ac774892b4d3a73bfdba9192e5e1cdd65215db2-ol8_aarch64_appstream
nginx-mod-http-image-filter-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpmb2ae514763c3416d04ac56fbdf66be58c624779d4a02103f3cacb0e43c90bd88-ol8_aarch64_appstream
nginx-mod-http-perl-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpmb1ca14a5d21e5ff719d7b1c7c008335cf3c3a5b6c2620b14f0b618add0e37dbc-ol8_aarch64_appstream
nginx-mod-http-xslt-filter-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpm2337b8f1b85017ca94b5a9819e9d083d9380edebddee75d9672b8be96cd65d02-ol8_aarch64_appstream
nginx-mod-mail-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpm0c99b3a7206a16bec67cf9fc29356106c94fb0e0190864ab1bb4eaec715842cd-ol8_aarch64_appstream
nginx-mod-stream-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.aarch64.rpme1e4fa53687905f484bcc561be65f3bd7803440c35c6cb44067c58414f6fd88a-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) nginx-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.src.rpm7d92a441ab3486d39c84d5a033cbe89e2e7ef27906369b4b9ffa3d657b2ad221-ol8_x86_64_appstream
nginx-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm49cc0f2f2b09ad47c012fdf3632e61d34fb0b4808d00e908fb9d7f44192859fb-ol8_x86_64_appstream
nginx-all-modules-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.noarch.rpm4732ca3c6292cf3fce59f75a18730424cabd3b40d1ea787fdc26c8f2df2cf7a3-ol8_x86_64_appstream
nginx-filesystem-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.noarch.rpma106422c1cf9b0afaa5bd9f99ac774892b4d3a73bfdba9192e5e1cdd65215db2-ol8_x86_64_appstream
nginx-mod-http-image-filter-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm8358e2394c9f6adeecdf157bc94a6280eb38e6bcc66f630ceaa749178ea48649-ol8_x86_64_appstream
nginx-mod-http-perl-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm3b7d7d9fa1fea3e1b4b715a5cd93482bc08a809f3d0aff30b1f6669036f326f3-ol8_x86_64_appstream
nginx-mod-http-xslt-filter-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm6c08e684798eb8042ff92878b40d50f062d81231373fad88860ce396051a880b-ol8_x86_64_appstream
nginx-mod-mail-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm44a775a4851fd4327742191d6fad61c2cf50ef035fe9696f640582681749bd81-ol8_x86_64_appstream
nginx-mod-stream-1.16.1-1.0.1.module+el8.3.0+7892+37ea59a5.1.x86_64.rpm0a43090801cec98eb6acd6ca48a42fd5ed45f23375b82861fae505b8b7d07592-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete