[ubuntu/questing-security] nginx 1.28.0-6ubuntu1.1 (Accepted)
Marc Deslauriers
marc.deslauriers at canonical.com
Thu Feb 12 17:46:56 UTC 2026
nginx (1.28.0-6ubuntu1.1) questing-security; urgency=medium
* SECURITY UPDATE: Proxy server response plain text injection
- debian/patches/CVE-2026-1642.patch: detect premature plain text
response from SSL backend in src/http/ngx_http_upstream.c.
- CVE-2026-1642
Date: 2026-02-09 14:25:11.028295+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/nginx/1.28.0-6ubuntu1.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Questing-changes
mailing list