[CLSA-2026:1790819334] nghttp2: Fix of CVE-2023-35945
Type:
security
Severity:
Important
Release date:
2026-10-01 01:49:05 UTC
Description:
- CVE-2023-35945: memory leak in nghttp2_session_mem_send_internal()
CVEs fixed:
Updated packages:
  • libnghttp2-1.43.0-6.el9_8.2.tuxcare.els1.aarch64.rpm
    sha:943f930eebe0cfd4d981b57081c607b8c72c2b019b6906e85e482da9d1425c37
  • libnghttp2-1.43.0-6.el9_8.2.tuxcare.els1.i686.rpm
    sha:0cee11c94da4aed65dce35b15561ffa1f13a5ea545adaafc882f9b352c37fef1
  • libnghttp2-1.43.0-6.el9_8.2.tuxcare.els1.x86_64.rpm
    sha:66dd14c98d1981f7d950e5865527735b7562368525c0748ffe26c155ec6daa11
  • libnghttp2-devel-1.43.0-6.el9_8.2.tuxcare.els1.aarch64.rpm
    sha:9c1ed118f7836a15ecc0526193165991481fafdfbd0a6661fdee02d315ecbb89
  • libnghttp2-devel-1.43.0-6.el9_8.2.tuxcare.els1.i686.rpm
    sha:8016f80027d92beee1ef1cd5cf028ecbed299869fcf3b601781eda2f5b181bbf
  • libnghttp2-devel-1.43.0-6.el9_8.2.tuxcare.els1.x86_64.rpm
    sha:41c1364f8382a8559561caf3baa3902fe925c73b386e0bd38d92b17c78dd6bcf
  • nghttp2-1.43.0-6.el9_8.2.tuxcare.els1.aarch64.rpm
    sha:3a70b5e1cc94a5009ea2bb788aa79887214a716ad1d12f020fc578e9a52bf29f
  • nghttp2-1.43.0-6.el9_8.2.tuxcare.els1.i686.rpm
    sha:5a0b41332293584deddfec7286e83b5279beffad36871e8a27a35b883e13dfed
  • nghttp2-1.43.0-6.el9_8.2.tuxcare.els1.x86_64.rpm
    sha:6fd1b4cb9355ab3856f61e66b19c12cdd8cde7b271a07b9bf0e1f1ac17ff6a0a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.