-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 22 Apr 2026 20:15:43 +0000 Source: nginx Binary: libnginx-mod-http-geoip libnginx-mod-http-geoip-dbgsym libnginx-mod-http-image-filter libnginx-mod-http-image-filter-dbgsym libnginx-mod-http-perl libnginx-mod-http-perl-dbgsym libnginx-mod-http-xslt-filter libnginx-mod-http-xslt-filter-dbgsym libnginx-mod-mail libnginx-mod-mail-dbgsym libnginx-mod-stream libnginx-mod-stream-dbgsym libnginx-mod-stream-geoip libnginx-mod-stream-geoip-dbgsym nginx nginx-dbgsym nginx-extras Architecture: amd64 Version: 1.22.1-9+deb12u6 Distribution: bookworm Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Jan Mojžíš Description: libnginx-mod-http-geoip - GeoIP HTTP module for Nginx libnginx-mod-http-image-filter - HTTP image filter module for Nginx libnginx-mod-http-perl - Perl module for Nginx libnginx-mod-http-xslt-filter - XSLT Transformation module for Nginx libnginx-mod-mail - Mail module for Nginx libnginx-mod-stream - Stream module for Nginx libnginx-mod-stream-geoip - GeoIP Stream module for Nginx nginx - small, powerful, scalable web/proxy server nginx-extras - nginx web/proxy server (extended version) Changes: nginx (1.22.1-9+deb12u6) bookworm; urgency=medium . * d/conf/*_params: use "$host" instead of "$http_host" * "$http_host" forwards the Host header exactly as supplied by the client and may not match the effective request target (e.g. absolute-form requests with a conflicting Host header) this can expose inconsistent or attacker-controlled host values to backend applications (uwsgi, fastcgi, scgi, proxy) * switch to "$host" as a safer, normalized alternative * note: this changes behaviour, as "$host" does not preserve the client-supplied port; deployments relying on "$http_host" including a port number may be affected * it is workaround for Debian bug #1126960 for stable/oldstable release Checksums-Sha1: 55131dc7c7a95f859ce77229b575c5ca9223729e 36780 libnginx-mod-http-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb 22a4b172be62117f7f5550267821632ab8a493a5 85292 libnginx-mod-http-geoip_1.22.1-9+deb12u6_amd64.deb 01b4997b6585039b5a9a8ee09ecec63ca4a4ea63 44036 libnginx-mod-http-image-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb cebf57bf67d49f0654045bd2593214ca991575c3 88960 libnginx-mod-http-image-filter_1.22.1-9+deb12u6_amd64.deb 994b8aeddf8a3bd4b980103f394a07ce348713a7 99680 libnginx-mod-http-perl-dbgsym_1.22.1-9+deb12u6_amd64.deb bb8d2a0d99267d49d5c76730d0a94593ef85469e 97128 libnginx-mod-http-perl_1.22.1-9+deb12u6_amd64.deb 8bf16773cffa39c548a0e167a692e662280644e4 53288 libnginx-mod-http-xslt-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb 9d572604f717b2bfce214ae3e88f68b820304cd2 87464 libnginx-mod-http-xslt-filter_1.22.1-9+deb12u6_amd64.deb d8cb2fce312e17697a99f76c306849b730f78c29 104880 libnginx-mod-mail-dbgsym_1.22.1-9+deb12u6_amd64.deb 2037373dc3c012b775daf677b57875eea61461e9 119528 libnginx-mod-mail_1.22.1-9+deb12u6_amd64.deb d7ef3c8044d634707bd08002782b41cd260c58b6 171888 libnginx-mod-stream-dbgsym_1.22.1-9+deb12u6_amd64.deb 165a7b05ff7344623fd0615a16201cc45bbf6a6d 22476 libnginx-mod-stream-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb 8a7b2fc3bd7111dad00ff638e5feb841a90d292c 84496 libnginx-mod-stream-geoip_1.22.1-9+deb12u6_amd64.deb e5d61c80c168fddf4cf966c3e40c82f1c9c3df0b 144596 libnginx-mod-stream_1.22.1-9+deb12u6_amd64.deb fec7e2bbb323cf5578e5c4aa1ee19a2b3c99f87c 1117888 nginx-dbgsym_1.22.1-9+deb12u6_amd64.deb 96cbd0e59de6a5aac04fcd95f0718ba091fe123c 80812 nginx-extras_1.22.1-9+deb12u6_amd64.deb efad20e3f606820ef817b09765d216f82b0492fe 14256 nginx_1.22.1-9+deb12u6_amd64-buildd.buildinfo 5c8fe849cd29a6f50ed248e2f1c20b7c2f6e4066 528800 nginx_1.22.1-9+deb12u6_amd64.deb Checksums-Sha256: 8e5f51f7a0fa35871d44b0794beea049e8b1469fdf9882a251ad95e0e36efa9e 36780 libnginx-mod-http-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb c94257858e08f71d2670159d9316bdb2fe900f30ff453406b66e1f9b850d1166 85292 libnginx-mod-http-geoip_1.22.1-9+deb12u6_amd64.deb 3f2bb6c3172b7fa5f0e6b9514f8a002aa966adb67b010c0bc33c937e77eb3745 44036 libnginx-mod-http-image-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb 3643ef696db428f3708e0abfc6578aa9732c895b770ac80a552924543cc58a49 88960 libnginx-mod-http-image-filter_1.22.1-9+deb12u6_amd64.deb 1c03c087af5f56c06141f29f1b22bb0d61adfba707d69c696de4e2dcc9792d55 99680 libnginx-mod-http-perl-dbgsym_1.22.1-9+deb12u6_amd64.deb 6f2400fe4fa0fe04bfb0a4cff824d30fe0c6e7bff41142a59e37b019085478dc 97128 libnginx-mod-http-perl_1.22.1-9+deb12u6_amd64.deb 8a2463ad54aee9017fad9e8917eaec53ccf883ca3975268b972b9e22b5979ab8 53288 libnginx-mod-http-xslt-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb b1179f9b9e12a529ba4e4e257e617f0a75b0d2d51a2b6a9aad01bca2bed25446 87464 libnginx-mod-http-xslt-filter_1.22.1-9+deb12u6_amd64.deb bf2e14e51a69007d9f27ee87b87fbf5f15240ee95f5ee22e1564c040f514836b 104880 libnginx-mod-mail-dbgsym_1.22.1-9+deb12u6_amd64.deb 48b1977237737822242e9d783323a5cac3da9cbdd59dc25af9d18a8fcf204390 119528 libnginx-mod-mail_1.22.1-9+deb12u6_amd64.deb 62e55024aa8d14a11a96997e5b2f7794ff1d382bb598143eea0642b80b415218 171888 libnginx-mod-stream-dbgsym_1.22.1-9+deb12u6_amd64.deb f04e1b35fdc8b05a843b7f1315d992e9f08fc261d75e3fc2e79c488af0fec4aa 22476 libnginx-mod-stream-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb 0b1aa79fa681994fa4bf17b58a613fd3d2c56e7b6dbb4fd31cb9c6486f6f2481 84496 libnginx-mod-stream-geoip_1.22.1-9+deb12u6_amd64.deb eeb9dbaf0760369d245ed35cb136658614983e58f797ad7230cf162b8880dfaf 144596 libnginx-mod-stream_1.22.1-9+deb12u6_amd64.deb 6124daa59243a12b47ac4ac96a38a9fd9a636339d6e17622f316e1ddeab3c2e2 1117888 nginx-dbgsym_1.22.1-9+deb12u6_amd64.deb 6ae996927f938f707dc58781594c369adaeb4f81502695c6dd11fa1320567be6 80812 nginx-extras_1.22.1-9+deb12u6_amd64.deb 60cd4bbf6efd7cece39baa82119f35cba19a061be66511688247a1af2f24889f 14256 nginx_1.22.1-9+deb12u6_amd64-buildd.buildinfo 6094ecef3d428301fa3d1d1fd5c4fa1f2b259fb8100bfb649f07d7135df1f4f8 528800 nginx_1.22.1-9+deb12u6_amd64.deb Files: fd200afc5860e178c15c111470c66a55 36780 debug optional libnginx-mod-http-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb 0344085519252071f4b0b8f69c271df1 85292 httpd optional libnginx-mod-http-geoip_1.22.1-9+deb12u6_amd64.deb 2040d017b399b8d815ac96a0cd4baeea 44036 debug optional libnginx-mod-http-image-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb dc6685987ff09e5fef934cf4893c49d2 88960 httpd optional libnginx-mod-http-image-filter_1.22.1-9+deb12u6_amd64.deb 47fae347dc4be5dc0602e6700683a11a 99680 debug optional libnginx-mod-http-perl-dbgsym_1.22.1-9+deb12u6_amd64.deb a84a7de4a62a93a1613aa88da3d7aac1 97128 httpd optional libnginx-mod-http-perl_1.22.1-9+deb12u6_amd64.deb 21b85b48095689081abe4a56c4783abb 53288 debug optional libnginx-mod-http-xslt-filter-dbgsym_1.22.1-9+deb12u6_amd64.deb b05609577902b8e653caa4c54c1c9950 87464 httpd optional libnginx-mod-http-xslt-filter_1.22.1-9+deb12u6_amd64.deb 3ce399ade7ec2baa5200eef35a2495d8 104880 debug optional libnginx-mod-mail-dbgsym_1.22.1-9+deb12u6_amd64.deb 5380d2eb8894ce75a6f56e72c0855819 119528 httpd optional libnginx-mod-mail_1.22.1-9+deb12u6_amd64.deb 07d0546d96e8ae2437203b3c1cc209f0 171888 debug optional libnginx-mod-stream-dbgsym_1.22.1-9+deb12u6_amd64.deb d1507f64da75d4f84e4a909ae70da37c 22476 debug optional libnginx-mod-stream-geoip-dbgsym_1.22.1-9+deb12u6_amd64.deb 5440b456f8530a1ac5f22bb7019659cf 84496 httpd optional libnginx-mod-stream-geoip_1.22.1-9+deb12u6_amd64.deb 70755bebb5005e7f3b609ede4a99b596 144596 httpd optional libnginx-mod-stream_1.22.1-9+deb12u6_amd64.deb d62c60ccfad1e713e4d2515a326b9523 1117888 debug optional nginx-dbgsym_1.22.1-9+deb12u6_amd64.deb 915ce04e399e00343873da4eecc8dd69 80812 httpd optional nginx-extras_1.22.1-9+deb12u6_amd64.deb 2170364f669310105c7c54a2c26ae766 14256 httpd optional nginx_1.22.1-9+deb12u6_amd64-buildd.buildinfo 02c4059f4e69532e380bdb2718bcc775 528800 httpd optional nginx_1.22.1-9+deb12u6_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE7cQ9mRD4+dWjjrb6PkCWRKsh20cFAmn5g2UACgkQPkCWRKsh 20cLYhAAk4BjtucOfui0Xnh0y+Os2m25LhPFVBSdJ+oO9vicNcu9ha/7Wd5Mi7Ae Q93mrimaPMv4FJzHMfJDDL8+QixCHDSIN36rZzqjYhNlESn88HI4qY5a9n9RyPCr 1+s/19keXc32jwLsve7UiEyQ5x8S0UK6LpXIMC1LQ4yHxoHZSJ5ltLNN+XH14zuB RAlixMOCrMtLKrawGiz9RAUHf96gCwN84+KTbg+L8Mx4bTV5pue7o5ACJnIigJ5V XnYXFHLVa4x5mH9qtP73bHBy6vcpmUQfok8sZuXcCRA7YUMcdGPGcM4lBGIIBWWa 1ydRaNWS0evKy5Jc+PW2pyhxJ7Qg8MkNX9asXLt0d/claPzxG15QLGGslP+qDfxt fs1D07vpZyPDDo29zRUCo7Ok5TKtnp6cmCOMAaTi3w3eDo/aFEeGuPIxkDePHWYw sQ4TaD85ojyHwrKtKpgIWW1XhiwRwbc7grzeQHn1kGewdhUZNd41eICYx1aSXRKa wSdMG1TNkPViR/laFA8pOIaUCMwHmoMJPvqvN+u4X/3ft/97Zhue38J9nilR540w qchZc9DpeGJC8QmJvD7G1tmYxJbj+d1INQPcTdDHHpdCRW/mt3VcPANuazDdhQkM 3o9vrE9t1GmN8yniEo3pKW+/ftEADiYkrvT5Z+Hexa8SjHfF1pU= =XT8c -----END PGP SIGNATURE-----