nginx 1.31.6 Patches Heap Buffer Overflow in HTTP/3 (CVE-2026-90439)
jedisct1 · x · 2026-09-16
nginx 1.31.6 is out with a security fix for CVE-2026-90439: a heap memory buffer overflow can occur in a worker process under certain configurations when using HTTP/3 with OpenSSL 3.5.0 and earlier.
More from Infra
- Liam Fedus' Lab Built Neon: 1,300 H200s and a Self-Driving Materials Loop Beat GPT-6 Astra at Superconductor Analysis — vwxyzjn · 2026-09-16
- Periodic Labs: 1,300 H200s beat frontier models on X-ray evals, 4.1x Megatron throughput — zephyr_z9 · 2026-09-16
- NVIDIA and Palantir plant a flag for sovereign AI, starting with NVIDIA — postalex · 2026-09-16
- Ben Bajarin bullish on Credo: DustPhotonics deal and vertical integration undervalued by market — BenBajarin · 2026-09-16
- Unconventional AI shows analog oscillator chip, claims 1000x power efficiency over Nvidia in 2 years — PTrubey · 2026-09-16
- RAM-Pooling Across 3 Old Devices Runs a 40B Model at 16 tok/s — With a Counterintuitive CPU Finding — Medicine_Blogscanner · 2026-09-16