ELA-247-1 nginx security update
Package nginx
ELA-247-1 nginx security update
Version 1.6.2-5+deb8u7
Related CVE CVE-2019-20372 CVE-2020-11724
Two HTTP request smuggling issues were discovered in nginx, a high-performance web and reverse proxy server, as well as in its ngx_lua plugin.
For Debian 8 jessie, these problems have been fixed in version 1.6.2-5+deb8u7.
We recommend that you upgrade your nginx packages.
Further information about Extended LTS security advisories can be found at: https://deb.freexian.com/extended-lts/
A nginx security update has been released for Debian GNU/Linux 8 Extended LTS to address two HTTP request smuggling issues.