It was discovered that an integer overflow existed in the range filter feature of nginx. A remote attacker could use this to expose sensitive information.
{ "binaries": [ { "binary_name": "nginx", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-common", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-core", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-extras", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-full", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-light", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-naxsi", "binary_version": "1.4.6-1ubuntu3.8" }, { "binary_name": "nginx-naxsi-ui", "binary_version": "1.4.6-1ubuntu3.8" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "nginx", "binary_version": "1.10.3-0ubuntu0.16.04.2" }, { "binary_name": "nginx-common", "binary_version": "1.10.3-0ubuntu0.16.04.2" }, { "binary_name": "nginx-core", "binary_version": "1.10.3-0ubuntu0.16.04.2" }, { "binary_name": "nginx-extras", "binary_version": "1.10.3-0ubuntu0.16.04.2" }, { "binary_name": "nginx-full", "binary_version": "1.10.3-0ubuntu0.16.04.2" }, { "binary_name": "nginx-light", "binary_version": "1.10.3-0ubuntu0.16.04.2" } ], "availability": "No subscription required" }