Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1024-1 | nginx security update |
Debian DSA |
DSA-3908-1 | nginx security update |
Ubuntu USN |
USN-3352-1 | nginx vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-16T18:39:56.411Z
Reserved: 2017-04-05T00:00:00
Link: CVE-2017-7529
No data.
Status : Deferred
Published: 2017-07-13T13:29:00.220
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-7529
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
Ubuntu USN