[Bug 295498] update www/nginx to 1.30.2 to fix another vulnerability
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Fri, 22 May 2026 15:50:19 UTC
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=295498
Bug ID: 295498
Summary: update www/nginx to 1.30.2 to fix another
vulnerability
Product: Ports & Packages
Version: Latest
Hardware: Any
OS: Any
Status: New
Severity: Affects Only Me
Priority: ---
Component: Individual Port(s)
Assignee: joneum@FreeBSD.org
Reporter: filis@FreeBSD.org
Flags: maintainer-feedback?(joneum@FreeBSD.org)
Assignee: joneum@FreeBSD.org
*) Security: a heap memory buffer overflow might occur in a worker
process when using a configuration with overlapping captures in
ngx_http_rewrite_module, potentially resulting in arbitrary code
execution (CVE-2026-9256).
Thanks to Mufeed VH of Winfunc Research.
--
You are receiving this mail because:
You are the assignee for the bug.