PT-2026-40679 · F5+4 · Nginx Plus+5

Published

2026-05-13

·

Updated

2026-06-18

·

CVE-2026-42934

CVSS v4.0

6.3

Medium

VectorAV:N/AC:L/AT:P/PR:N/UI:N/VC:L/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions NGINX Plus (affected versions not specified) NGINX Open Source (affected versions not specified)
Description A heap buffer over-read exists in the ngx http charset module module. This occurs when the charset, source charset, charset map, and proxy pass directives are configured, specifically with buffering disabled ("off"). Unauthenticated attackers can send requests that, under certain conditions, cause the NGINX worker process to read beyond the allocated heap buffer, potentially leading to a process restart or limited disclosure of memory.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-06965
BIT-NGINX-2026-42934
BIT-NGINX-GATEWAY-2026-42934
CVE-2026-42934
ECHO-0618-45A8-483A
OPENSUSE-SU-2026:10796-1
SUSE-SU-2026:2370-1
USN-8354-1
USN-8375-1

Affected Products

Linuxmint
Nginx Open Source
Nginx Plus
Nginx
Red Os
Ubuntu