Описание
ELSA-2019-2799: nginx:1.14 security update (IMPORTANT)
[1:1.14.1-9.0.1]
- Remove Red Hat references [Orabug: 29498217]
[1:1.14.1-9]
- Resolves: #1744811 - CVE-2019-9511 nginx:1.14/nginx: HTTP/2: large amount of data request leads to denial of service
- Resolves: #1744325 - CVE-2019-9513 nginx:1.14/nginx: HTTP/2: flood using PRIORITY frames resulting in excessive resource consumption
- Resolves: #1745094 - CVE-2019-9516 nginx:1.14/nginx: HTTP/2: 0-length headers leads to denial of service
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
Module nginx:1.14 is enabled
nginx
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-all-modules
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-filesystem
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-image-filter
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-perl
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-xslt-filter
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-mail
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-stream
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
Oracle Linux x86_64
Module nginx:1.14 is enabled
nginx
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-all-modules
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-filesystem
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-image-filter
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-perl
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-http-xslt-filter
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-mail
1.14.1-9.0.1.module+el8.0.0+5347+9282027e
nginx-mod-stream
1.14.1-9.0.1.module+el8.0.0+5347+9282027e