Updated nginx packages fix security vulnerabilities
Publication date: 20 Jul 2026Modification date: 20 Jul 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-42055 , CVE-2026-48142
Description
ngx_http_proxy_v2_module and ngx_http_grpc_module vulnerability.
(CVE-2026-42055)
ngx_http_charset_module vulnerability. (CVE-2026-48142)
References
- https://bugs.mageia.org/show_bug.cgi?id=35750
- https://ubuntu.com/security/notices/USN-8458-1
- https://my.f5.com/manage/s/article/K000161584
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WLAG3KT4JVKUFDRLDTUDAIB4KDUXBVGU/
- https://lists.debian.org/debian-security-announce/2026/msg00285.html
- https://www.cve.org/CVERecord?id=CVE-2026-42055
- https://www.cve.org/CVERecord?id=CVE-2026-48142
SRPMS
10/core
- nginx-1.30.3-1.mga10
9/core
- nginx-1.30.3-1.mga9