<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
	<DocumentTitle xml:lang="en">An update for nginx is now available for openEuler-20.03-LTS-SP4,openEuler-22.03-LTS-SP4,openEuler-24.03-LTS,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP2,openEuler-24.03-LTS-SP3</DocumentTitle>
	<DocumentType>Security Advisory</DocumentType>
	<DocumentPublisher Type="Vendor">
		<ContactDetails>openeuler-security@openeuler.org</ContactDetails>
		<IssuingAuthority>openEuler security committee</IssuingAuthority>
	</DocumentPublisher>
	<DocumentTracking>
		<Identification>
			<ID>openEuler-SA-2026-1572</ID>
		</Identification>
		<Status>Final</Status>
		<Version>1.0</Version>
		<RevisionHistory>
			<Revision>
				<Number>1.0</Number>
				<Date>2026-03-15</Date>
				<Description>Initial</Description>
			</Revision>
		</RevisionHistory>
		<InitialReleaseDate>2026-03-15</InitialReleaseDate>
		<CurrentReleaseDate>2026-03-15</CurrentReleaseDate>
		<Generator>
			<Engine>openEuler SA Tool V1.0</Engine>
			<Date>2026-03-15</Date>
		</Generator>
	</DocumentTracking>
	<DocumentNotes>
		<Note Title="Synopsis" Type="General" Ordinal="1" xml:lang="en">nginx security update</Note>
		<Note Title="Summary" Type="General" Ordinal="2" xml:lang="en">An update for nginx is now available for openEuler-20.03-LTS-SP4,openEuler-22.03-LTS-SP4,openEuler-24.03-LTS,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP2,openEuler-24.03-LTS-SP3</Note>
		<Note Title="Description" Type="General" Ordinal="3" xml:lang="en">NGINX is a free, open-source, high-performance HTTP server and reverse proxy,  as well as an IMAP/POP3 proxy server.

Security Fix(es):

A vulnerability exists in NGINX OSS and NGINX Plus when configured to proxy to upstream Transport Layer Security (TLS) servers. An attacker with a man-in-the-middle (MITM) position on the upstream server side—along with conditions beyond the attacker&apos;s control—may be able to inject plain text data into the response from an upstream proxied server. The vulnerability is classified as CWE-349: The product, when processing trusted data, accepts any untrusted data that is also included with the trusted data, treating the untrusted data as if it were trusted. This vulnerability primarily affects data integrity.(CVE-2026-1642)</Note>
		<Note Title="Topic" Type="General" Ordinal="4" xml:lang="en">An update for nginx is now available for openEuler-20.03-LTS-SP4,openEuler-22.03-LTS-SP4,openEuler-24.03-LTS,openEuler-24.03-LTS-SP1,openEuler-24.03-LTS-SP2,openEuler-24.03-LTS-SP3.

openEuler Security has rated this update as having a security impact of high. A Common Vunlnerability Scoring System(CVSS)base score,which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.</Note>
		<Note Title="Severity" Type="General" Ordinal="5" xml:lang="en">High</Note>
		<Note Title="Affected Component" Type="General" Ordinal="6" xml:lang="en">nginx</Note>
	</DocumentNotes>
	<DocumentReferences>
		<Reference Type="Self">
			<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-1572</URL>
		</Reference>
		<Reference Type="openEuler CVE">
			<URL>https://www.openeuler.org/en/security/cve/detail/?cveId=CVE-2026-1642</URL>
		</Reference>
		<Reference Type="Other">
			<URL>https://nvd.nist.gov/vuln/detail/CVE-2026-1642</URL>
		</Reference>
	</DocumentReferences>
	<ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
		<Branch Type="Product Name" Name="openEuler">
			<FullProductName ProductID="openEuler-20.03-LTS-SP4" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">openEuler-20.03-LTS-SP4</FullProductName>
			<FullProductName ProductID="openEuler-22.03-LTS-SP4" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">openEuler-22.03-LTS-SP4</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">openEuler-24.03-LTS</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP1" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">openEuler-24.03-LTS-SP1</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP2" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">openEuler-24.03-LTS-SP2</FullProductName>
			<FullProductName ProductID="openEuler-24.03-LTS-SP3" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">openEuler-24.03-LTS-SP3</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="noarch">
			<FullProductName ProductID="nginx-all-modules-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-all-modules-1.21.5-9.oe2003sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-filesystem-1.21.5-9.oe2003sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-all-modules-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-all-modules-1.21.5-11.oe2203sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-filesystem-1.21.5-11.oe2203sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-help-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-help-1.21.5-11.oe2203sp4.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-all-modules-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-all-modules-1.24.0-7.oe2403.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-filesystem-1.24.0-7.oe2403.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-help-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-help-1.24.0-7.oe2403.noarch.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-all-modules-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-all-modules-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-filesystem-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-filesystem-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-help-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-help-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-all-modules-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-all-modules-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-filesystem-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-help-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-help-1.24.0-7.oe2403sp1.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-all-modules-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-all-modules-1.24.0-7.oe2403sp2.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-filesystem-1.24.0-7.oe2403sp2.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-help-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-help-1.24.0-7.oe2403sp2.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-all-modules-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-all-modules-1.24.0-7.oe2403sp3.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-filesystem-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-filesystem-1.24.0-7.oe2403sp3.noarch.rpm</FullProductName>
			<FullProductName ProductID="nginx-help-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-help-1.24.0-7.oe2403sp3.noarch.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="aarch64">
			<FullProductName ProductID="nginx-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-debuginfo-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-debugsource-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-devel-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-image-filter-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-perl-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-xslt-filter-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-mail-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-stream-1.21.5-9.oe2003sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-debuginfo-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-debugsource-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-devel-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-image-filter-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-perl-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-xslt-filter-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-mail-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-stream-1.21.5-11.oe2203sp4.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-debuginfo-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-debugsource-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-devel-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-image-filter-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-perl-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-xslt-filter-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-mail-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-stream-1.24.0-7.oe2403.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-debuginfo-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-debugsource-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-image-filter-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-perl-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-mail-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-stream-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-debuginfo-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-debugsource-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-devel-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-image-filter-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-perl-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-mail-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-stream-1.24.0-7.oe2403sp1.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-debuginfo-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-debugsource-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-devel-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-image-filter-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-perl-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-mail-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-stream-1.24.0-7.oe2403sp2.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-debuginfo-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-debugsource-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-devel-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-image-filter-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-perl-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-mail-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-stream-1.24.0-7.oe2403sp3.aarch64.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="src">
			<FullProductName ProductID="nginx-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-1.21.5-9.oe2003sp4.src.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-1.21.5-11.oe2203sp4.src.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-1.24.0-7.oe2403.src.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-1.24.0-7.oe2403sp1.src.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-1.24.0-7.oe2403sp1.src.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-1.24.0-7.oe2403sp2.src.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-1.24.0-7.oe2403sp3.src.rpm</FullProductName>
		</Branch>
		<Branch Type="Package Arch" Name="x86_64">
			<FullProductName ProductID="nginx-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-debuginfo-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-debugsource-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-devel-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-image-filter-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-perl-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-http-xslt-filter-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-mail-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.21.5-9" CPE="cpe:/a:openEuler:openEuler:20.03-LTS-SP4">nginx-mod-stream-1.21.5-9.oe2003sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-debuginfo-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-debugsource-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-devel-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-image-filter-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-perl-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-http-xslt-filter-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-mail-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.21.5-11" CPE="cpe:/a:openEuler:openEuler:22.03-LTS-SP4">nginx-mod-stream-1.21.5-11.oe2203sp4.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-debuginfo-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-debugsource-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-devel-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-image-filter-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-perl-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-http-xslt-filter-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-mail-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS">nginx-mod-stream-1.24.0-7.oe2403.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-debuginfo-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-debugsource-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-image-filter-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-perl-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-mail-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="compat-nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">compat-nginx-mod-stream-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-debuginfo-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-debugsource-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-devel-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-image-filter-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-perl-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-mail-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP1">nginx-mod-stream-1.24.0-7.oe2403sp1.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-debuginfo-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-debugsource-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-devel-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-image-filter-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-perl-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-mail-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP2">nginx-mod-stream-1.24.0-7.oe2403sp2.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debuginfo-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-debuginfo-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-debugsource-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-debugsource-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-devel-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-devel-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-image-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-image-filter-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-perl-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-perl-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-http-xslt-filter-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-http-xslt-filter-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-mail-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-mail-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
			<FullProductName ProductID="nginx-mod-stream-1.24.0-7" CPE="cpe:/a:openEuler:openEuler:24.03-LTS-SP3">nginx-mod-stream-1.24.0-7.oe2403sp3.x86_64.rpm</FullProductName>
		</Branch>
	</ProductTree>
	<Vulnerability Ordinal="1" xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1">
		<Notes>
			<Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">A vulnerability exists in NGINX OSS and NGINX Plus when configured to proxy to upstream Transport Layer Security (TLS) servers. An attacker with a man-in-the-middle (MITM) position on the upstream server side—along with conditions beyond the attacker&apos;s control—may be able to inject plain text data into the response from an upstream proxied server. The vulnerability is classified as CWE-349: The product, when processing trusted data, accepts any untrusted data that is also included with the trusted data, treating the untrusted data as if it were trusted. This vulnerability primarily affects data integrity.</Note>
		</Notes>
		<ReleaseDate>2026-03-15</ReleaseDate>
		<CVE>CVE-2026-1642</CVE>
		<ProductStatuses>
			<Status Type="Fixed">
				<ProductID>openEuler-20.03-LTS-SP4</ProductID>
				<ProductID>openEuler-22.03-LTS-SP4</ProductID>
				<ProductID>openEuler-24.03-LTS</ProductID>
				<ProductID>openEuler-24.03-LTS-SP1</ProductID>
				<ProductID>openEuler-24.03-LTS-SP2</ProductID>
				<ProductID>openEuler-24.03-LTS-SP3</ProductID>
			</Status>
		</ProductStatuses>
		<Threats>
			<Threat Type="Impact">
				<Description>High</Description>
			</Threat>
		</Threats>
		<CVSSScoreSets>
			<ScoreSet>
				<BaseScore>8.2</BaseScore>
				<Vector>AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N</Vector>
			</ScoreSet>
		</CVSSScoreSets>
		<Remediations>
			<Remediation Type="Vendor Fix">
				<Description>nginx security update</Description>
				<DATE>2026-03-15</DATE>
				<URL>https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2026-1572</URL>
			</Remediation>
		</Remediations>
	</Vulnerability>
</cvrfdoc>