details: https://hg.nginx.org/nginx/rev/e4c5da06073c branches: stable-1.26 changeset: 9286:e4c5da06073c user: Sergey Kandaurov <pluk...@nginx.com> date: Mon Aug 12 18:25:45 2024 +0400 description: nginx-1.26.2-RELEASE
diffstat: docs/xml/nginx/changes.xml | 18 ++++++++++++++++++ 1 files changed, 18 insertions(+), 0 deletions(-) diffs (28 lines): diff -r d1edb09453c6 -r e4c5da06073c docs/xml/nginx/changes.xml --- a/docs/xml/nginx/changes.xml Mon Aug 12 18:20:49 2024 +0400 +++ b/docs/xml/nginx/changes.xml Mon Aug 12 18:25:45 2024 +0400 @@ -5,6 +5,24 @@ <change_log title="nginx"> +<changes ver="1.26.2" date="2024-08-14"> + +<change type="security"> +<para lang="ru"> +обработка специально созданного mp4-файла модулем ngx_http_mp4_module +могла приводить к падению рабочего процесса (CVE-2024-7347).<br/> +Спасибо Nils Bars. +</para> +<para lang="en"> +processing of a specially crafted mp4 file by the ngx_http_mp4_module +might cause a worker process crash (CVE-2024-7347).<br/> +Thanks to Nils Bars. +</para> +</change> + +</changes> + + <changes ver="1.26.1" date="2024-05-29"> <change type="security"> _______________________________________________ nginx-devel mailing list nginx-devel@nginx.org https://mailman.nginx.org/mailman/listinfo/nginx-devel