Gentoo Linux Security Advisory GLSA 200909-18 – A buffer underflow vulnerability in the request URI processing of nginx might enable remote attackers to execute arbitrary code or cause a Denial of Service. Chris Ries reported a heap-based buffer underflow in the ngx_http_parse_complex_uri() function in http/ngx_http_parse.c when parsing the request URI. Versions less than 0.7.62 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/81454/glsa-200909-18.txt
Source: https://packetstormsecurity.com/files/81454/Gentoo-Linux-Security-Advisory-200909-18.html

