stable

nginx-1.30.1-1.fc42, nginx-mod-brotli-1.0.0~rc-9.fc42, & 5 more

FEDORA-2026-38623b4fed created by heffer a month ago for Fedora 42

nginx-mod-vts:

  • Rebuild for 1.30.1

nginx-mod-fancyindex:

  • Rebuild for 1.30.1

nginx-mod-naxsi:

  • Rebuild for 1.30.1

nginx-mod-headers-more:

  • Rebuild for 1.30.1

nginx-mod-brotli:

  • Rebuild for 1.30.1

nginx-mod-modsecurity:

  • Rebuild for 1.30.1

nginx:

  • update to 1.30.1
  • fixes CVE-2026-42926, CVE-2026-42945, CVE-2026-42946, CVE-2026-42934, CVE-2026-40460 and CVE-2026-40701

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2026-38623b4fed

This update's test gating status has been changed to 'waiting'.

a month ago

This update's test gating status has been changed to 'ignored'.

a month ago

This update has been submitted for testing by bodhi.

a month ago

heffer edited this update.

a month ago

This update has been pushed to testing.

a month ago
User Icon vfedorenko provided feedback 4 weeks ago
karma
BZ#2477413 CVE-2026-42945 nginx: NGINX: Arbitrary Code Execution Vulnerability [fedora-all]

This update can be pushed to stable now if the maintainer wishes

4 weeks ago

This update has been submitted for stable by heffer.

4 weeks ago
User Icon salimma commented & provided feedback 4 weeks ago
karma

Installs fine in mock

ebranch check-update:

Checking update: FEDORA-2026-38623b4fed

Branch: f42

Updated packages: nginx, nginx-mod-brotli, nginx-mod-fancyindex, nginx-mod-headers-more, nginx-mod-modsecurity, nginx-mod-naxsi, nginx-mod-vts

Updated Provides (39)

  • config(nginx) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • config(nginx-core) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx(abi) (1.30.0 → 1.30.1)
  • nginx-all-modules (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-core (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-core(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-filesystem (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-devel (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-devel(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-geoip (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-geoip(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-image-filter (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-image-filter(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-perl (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-perl(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-xslt-filter (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-http-xslt-filter(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-mail (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-mail(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-stream (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-stream(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-stream-geoip (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • nginx-mod-stream-geoip(aarch-64) (2:1.30.0-1.fc42 → 2:1.30.1-1.fc42)
  • perl(nginx) (1.30.0 → 1.30.1)
  • nginx-mod-brotli (1.0.0~rc-8.fc42 → 1.0.0~rc-9.fc42)
  • nginx-mod-brotli(aarch-64) (1.0.0~rc-8.fc42 → 1.0.0~rc-9.fc42)
  • nginx-mod-fancyindex (0.6.0-3.fc42 → 0.6.0-4.fc42)
  • nginx-mod-fancyindex(aarch-64) (0.6.0-3.fc42 → 0.6.0-4.fc42)
  • nginx-mod-headers-more (0.39-8.fc42 → 0.39-9.fc42)
  • nginx-mod-headers-more(aarch-64) (0.39-8.fc42 → 0.39-9.fc42)
  • config(nginx-mod-modsecurity) (1.0.4-9.fc42 → 1.0.4-10.fc42)
  • nginx-mod-modsecurity (1.0.4-9.fc42 → 1.0.4-10.fc42)
  • nginx-mod-modsecurity(aarch-64) (1.0.4-9.fc42 → 1.0.4-10.fc42)
  • nginx-mod-naxsi (1.6-16.fc42 → 1.6-17.fc42)
  • nginx-mod-naxsi(aarch-64) (1.6-16.fc42 → 1.6-17.fc42)
  • nginx-mod-vts (0.2.4-8.fc42 → 0.2.4-9.fc42)
  • nginx-mod-vts(aarch-64) (0.2.4-8.fc42 → 0.2.4-9.fc42)

Reverse dependencies

  • lemonldap-ng: OK
  • libzypp: OK
  • mailcap: OK
  • munin: OK
  • nextcloud: OK
  • noggin: OK
  • openqa: OK
  • pagure: OK
  • perl-MogileFS-Server: OK
  • php: OK
  • phpMyAdmin: OK
  • roundcubemail: OK
  • sympa: OK
  • web-assets: OK
  • wordpress: OK

Summary: all 15 reverse dependencies OK.

BZ#2477413 CVE-2026-42945 nginx: NGINX: Arbitrary Code Execution Vulnerability [fedora-all]

This update has been pushed to stable.

4 weeks ago

Please log in to add feedback.

Metadata
Type
security
Severity
urgent
Karma
2
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
2
Stable by Time
7 days
Dates
submitted
a month ago
in testing
a month ago
in stable
4 weeks ago
modified
a month ago
approved
4 weeks ago
BZ#2477413 CVE-2026-42945 nginx: NGINX: Arbitrary Code Execution Vulnerability [fedora-all]
0
2

Automated Test Results