nginx vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the nginx package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Out-of-bounds Read

<1.4.6-1ubuntu3.9+esm5
  • M
Out-of-bounds Write

<1.4.6-1ubuntu3.9+esm4
  • M
Out-of-bounds Write

<1.4.6-1ubuntu3.9+esm4
  • L
CVE-2020-36309

*
  • M
Integer Overflow or Wraparound

<1.4.6-1ubuntu3.9+esm3
  • L
Improper Certificate Validation

*
  • M
Off-by-one Error

<1.4.6-1ubuntu3.9+esm2
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

<1.4.6-1ubuntu3.9+esm1
  • M
Resource Exhaustion

<1.4.6-1ubuntu3.9
  • M
Integer Overflow or Wraparound

<1.4.6-1ubuntu3.8
  • M
Link Following

<1.4.6-1ubuntu3.6
  • M
NULL Pointer Dereference

<1.4.6-1ubuntu3.5
  • M
Resource Exhaustion

<1.4.6-1ubuntu3.4
  • M
Use After Free

<1.4.6-1ubuntu3.4
  • M
NULL Pointer Dereference

<1.4.6-1ubuntu3.4
  • M
Insufficient Session Expiration

<1.4.6-1ubuntu3.1