compression bomb and Slowloris-style attack
Resolves: RHEL-178674 - nginx: code execution and denial of
service (CVE-2026-9256)
Resolves: RHEL-182545 - nginx: HTTP/2: Remote Denial of Service via
compression bomb and Slowloris-style attack
Resolves: RHEL-188404 - nginx: NGINX: Arbitrary code execution or.
Denial of Service via heap-based buffer overflow with crafted HTTP/2
headers (CVE-2026-42055)