← العودة للجدول
CVE-2026-40460
USN-8354-1: nginx vulnerabilities
📅 2026-06-01 16:52:07
🔴 Critical 🔥 No Ubuntu Security Vulnerability Linux 🎯 EPSS 0.03%

📋 الوصف الكامل

It was discovered that nginx did not properly validate source addresses in the HTTP/3 QUIC module. A remote attacker could possibly use this issue to bypass authorization checks or rate limiting. This issue only affected Ubuntu 25.04 and Ubuntu 25.10. (CVE-2026-40460) It was discovered that nginx contained a use-after-free vulnerability in the ngx_http_ssl_module module when client certificate ve

💻 الأنظمة المتأثرة

Ubuntu 22.04/20.04 LTS

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-40460

📡 المصدر

Ubuntu Security

✅ الحلول والتخفيف

Refer to CVE-2026-40460 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←