{"cve": "CVE-2021-23017", "updated": null, "url": null, "affected": [{"ecosystem": "Arch", "package": "nginx-mainline", "affected": "1.19.10-1", "fixed": "1.21.0-1", "status": "fixed", "ref": "https://security.archlinux.org/AVG-1987"}, {"ecosystem": "Arch", "package": "nginx", "affected": "1.20.0-1", "fixed": "1.20.1-1", "status": "fixed", "ref": "https://security.archlinux.org/AVG-1988"}, {"ecosystem": "Debian:11", "package": "nginx", "affected": null, "fixed": "1.18.0-6.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-23017"}, {"ecosystem": "Debian:12", "package": "nginx", "affected": null, "fixed": "1.18.0-6.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-23017"}, {"ecosystem": "Debian:13", "package": "nginx", "affected": null, "fixed": "1.18.0-6.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-23017"}, {"ecosystem": "Debian:14", "package": "nginx", "affected": null, "fixed": "1.18.0-6.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-23017"}, {"ecosystem": "Debian:9", "package": "nginx", "affected": null, "fixed": "1.10.3-1+deb9u6", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-2670-1"}, {"ecosystem": "Debian:10", "package": "nginx", "affected": null, "fixed": "1.14.2-2+deb10u4", "status": "fixed", "ref": "https://osv.dev/vulnerability/DSA-4921-1"}, {"ecosystem": "Ubuntu:Pro:14.04:LTS", "package": "nginx", "affected": null, "fixed": "1.4.6-1ubuntu3.9+esm2", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-23017"}, {"ecosystem": "Ubuntu:Pro:16.04:LTS", "package": "nginx", "affected": null, "fixed": "1.10.3-0ubuntu0.16.04.5+esm1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-23017"}, {"ecosystem": "Ubuntu:18.04:LTS", "package": "nginx", "affected": null, "fixed": "1.14.0-0ubuntu1.9", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-23017"}, {"ecosystem": "Ubuntu:20.04:LTS", "package": "nginx", "affected": null, "fixed": "1.18.0-0ubuntu1.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-23017"}, {"ecosystem": "Ubuntu:18.04:LTS", "package": "nginx", "affected": null, "fixed": "1.14.0-0ubuntu1.9", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-4967-1"}, {"ecosystem": "Ubuntu:20.04:LTS", "package": "nginx", "affected": null, "fixed": "1.18.0-0ubuntu1.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-4967-1"}, {"ecosystem": "Ubuntu:Pro:14.04:LTS", "package": "nginx", "affected": null, "fixed": "1.4.6-1ubuntu3.9+esm2", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-4967-2"}, {"ecosystem": "Ubuntu:Pro:16.04:LTS", "package": "nginx", "affected": null, "fixed": "1.10.3-0ubuntu0.16.04.5+esm1", "status": "fixed", "ref": "https://osv.dev/vulnerability/USN-4967-2"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15-ESPOS", "package": "nginx", "affected": null, "fixed": "1.16.1-3.15.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1792-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15-LTSS", "package": "nginx", "affected": null, "fixed": "1.16.1-3.15.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1792-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15-LTSS", "package": "nginx", "affected": null, "fixed": "1.16.1-3.15.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1792-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15", "package": "nginx", "affected": null, "fixed": "1.16.1-3.15.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1792-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Server Applications 15 SP2", "package": "nginx", "affected": null, "fixed": "1.16.1-3.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1814-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Server Applications 15 SP3", "package": "nginx", "affected": null, "fixed": "1.19.8-3.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1815-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP1-BCL", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP1-LTSS", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP1", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Manager Proxy 4.0", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Manager Retail Branch Server 4.0", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Manager Server 4.0", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "SUSE:Enterprise Storage 6", "package": "nginx", "affected": null, "fixed": "1.16.1-6.13.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:1839-1"}, {"ecosystem": "openSUSE:Leap 15.2", "package": "nginx", "affected": null, "fixed": "1.16.1-lp152.2.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2021:0835-1"}, {"ecosystem": "openSUSE:Leap 15.3", "package": "nginx", "affected": null, "fixed": "1.19.8-3.3.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2021:1815-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "nginx", "affected": null, "fixed": "1.21.3-1.4", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2024:11092-1"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "nginx", "affected": null, "fixed": "1:1.18.0-3.module+el8.4.0+11152+f736ed63.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:2259"}, {"ecosystem": "Red Hat:rhel_eus:8.1::appstream", "package": "nginx", "affected": null, "fixed": "1:1.16.1-1.module+el8.1.0+11153+6c3a40a9.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:2290"}, {"ecosystem": "Red Hat:rhel_eus:8.2::appstream", "package": "nginx", "affected": null, "fixed": "1:1.16.1-1.module+el8.2.0+11154+636e4c3b.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:2290"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "nginx", "affected": null, "fixed": "1:1.16.1-2.module+el8.4.0+11155+68135136.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:2290"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "nginx", "affected": null, "fixed": "1:1.20.1-1.module+el8.5.0+13723+ab304644", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2022:0323"}]}