Security Advisories (2)
CVE-2016-0747 (2016-02-15)

The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to arbitrary name resolution.

CVE-2016-0746 (2016-02-15)

Use-after-free vulnerability in the resolver in nginx 0.6.18 through 1.8.0 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.

Modules

full-featured perl support for nginx
full-featured perl support for nginx
testing framework for nginx-perl and nginx

Provides

in src/http/modules/perl/Test.pm
in src/http/modules/perl/Test.pm