[CLSA-2026:1784716173] Fix CVE(s): CVE-2026-42533
Type:
security
Severity:
Low
Release date:
2026-07-22 10:29:58 UTC
Description:
* SECURITY UPDATE: buffer overflow when using map with regex captures - debian/patches/CVE-2026-42533.patch: add buffer overrun protection to script copy operations by checking available room against e->end, and cut the result string to its actual length to avoid trailing garbage - CVE-2026-42533
CVEs fixed:
Updated packages:
  • libnginx-mod-http-geoip-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:c19bbd76ab3e4f65daffa842a0bfecf321847de5
  • libnginx-mod-http-image-filter-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:39c1eb85988e936d39d8dbdb9c20b85d521fe3cb
  • libnginx-mod-http-perl-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:73c225ef78568160479f4d210dd8a585b11d2df1
  • libnginx-mod-http-xslt-filter-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:42954510e3820682f212e55f1f41e3fe9d069998
  • libnginx-mod-mail-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:5bb6f54b811eb80caa019e8cf51b8c9489856390
  • libnginx-mod-stream-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:da4b8eb1c9169bbfa73659f2c0226fe0de6f62f2
  • libnginx-mod-stream-geoip-1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:08f8b69bd69b7535eea7721a20ef6afb3bc3c5ca
  • nginx1.26_1.26.3-3~trixie+tuxcare.els11_amd64.deb
    sha:4b5a9c71504e5b1139c9e180272c2b17521843d6
  • nginx1.26-common_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:cfe5884286c6405612e47daff149d2adaeb83600
  • nginx1.26-dev_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:fc552702d599182b1eb9fa05ae5eeaa8389ca7da
  • nginx1.26-doc_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:29044f62509d66e7708acb3397c45446d864c73d
  • libnginx-mod-http-geoip-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:856739b59f9861ed9bc31afd383946091f32906c
  • libnginx-mod-http-image-filter-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:f35325cf9dba7a06bdd61b699a4d31bb2f693c43
  • libnginx-mod-http-perl-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:ab482777ccc317992979e4f98e650bb88f1f22c3
  • libnginx-mod-http-xslt-filter-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:fc0f3183a76f1708b3870d20a4a324cee9dfbbca
  • libnginx-mod-mail-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:eeb83c0aafa545ece09f26977191023d44d08d2b
  • libnginx-mod-stream-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:0fbf4004a38fff01fa1395242ffa368d6d6303ef
  • libnginx-mod-stream-geoip-1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:07f25e3f6176ece1462ca224e5fffc217db94f06
  • nginx1.26_1.26.3-3~trixie+tuxcare.els11_arm64.deb
    sha:91b5993b5bb2f62a4a60401c262a3cc60176cc84
  • nginx1.26-common_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:cfe5884286c6405612e47daff149d2adaeb83600
  • nginx1.26-dev_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:fc552702d599182b1eb9fa05ae5eeaa8389ca7da
  • nginx1.26-doc_1.26.3-3~trixie+tuxcare.els11_all.deb
    sha:29044f62509d66e7708acb3397c45446d864c73d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.