VDB
WID-SEC-W-2022-1803
WID-SEC-W-2022-1803
PUBLISHED
NGINX Plus ist die kommerzielle Variante von NGINX, einer Webserver-, Reverse Proxy- und E-Mail Proxy Software. NGINX ist eine Webserver-, Reverse Proxy- und E-Mail-Proxy Software.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| NGINX NGINX Open Source 1.22.1 (stable) | ||
| NGINX NGINX Plus R27 P1 | ||
| Red Hat Enterprise Linux | ||
| NGINX NGINX Open Source 1.23.2 (mainline) | ||
| Debian Linux | ||
| NGINX NGINX Ingress Controller 2.4.1 | ||
| Oracle Linux | ||
| NGINX NGINX Ingress Controller <1.12.5 | ||
| NGINX NGINX Ingress Controller 1.12.5 | ||
| Amazon Linux 2 | ||
| NGINX NGINX Open Source Subscription R2 P1 | ||
| NGINX NGINX Open Source Subscription <R2 P1 | ||
| NGINX NGINX Ingress Controller <2.4.1 | ||
| NGINX NGINX Open Source Subscription R1 P1 | ||
| NGINX NGINX Open Source Subscription <R1 P1 | ||
| NGINX NGINX Plus <R26 P1 | ||
| NGINX NGINX Open Source <1.23.2 (mainline) | ||
| NGINX NGINX Plus R26 P1 | ||
| NGINX NGINX Open Source <1.22.1 (stable) | ||
| NGINX NGINX Plus <R27 P1 |
Timeline
- Oct 19, 2022 CVE Published
- May 22, 2025 CVE Updated
- Apr 3, 2026 Distribution Patch
- Apr 3, 2026 Distribution Patch
- Apr 3, 2026 Distribution Patch
- Apr 3, 2026 Distribution Patch
References
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-1803.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-1803 advisory
- https://www.nginx.com/blog/updating-nginx-for-vulnerabilities-in-the-mp4-and-hls-video-streaming-modules/ url
- https://support.f5.com/csp/article/K81926432 url
- https://support.f5.com/csp/article/K28112382 url
- https://support.f5.com/csp/article/K01112063 url
- https://ubuntu.com/security/notices/USN-5722-1 url
- https://lists.debian.org/debian-security-announce/2022/msg00251.html url
- https://lists.debian.org/debian-lts-announce/2022/11/msg00031.html url
- https://alas.aws.amazon.com/ALAS-2023-1665.html url
- https://alas.aws.amazon.com/AL2022/ALAS-2023-270.html url
- https://lists.suse.com/pipermail/sle-security-updates/2023-January/013565.html url
- https://lists.suse.com/pipermail/sle-security-updates/2023-January/013593.html url
- https://lists.suse.com/pipermail/sle-security-updates/2023-January/013597.html url
- https://lists.suse.com/pipermail/sle-security-updates/2023-February/013644.html url
- https://alas.aws.amazon.com/AL2/ALASNGINX1-2023-001.html url
- https://access.redhat.com/errata/RHSA-2025:7546 url
- https://access.redhat.com/errata/RHSA-2025:7402 url
- https://access.redhat.com/errata/RHSA-2025:7619 url
- https://linux.oracle.com/errata/ELSA-2025-7402.html url