Nginx is a great webserver that is flexible, feature rich and fairly well documented. But have you ever wanted to whitelist files upon their extensions and did not find a solution in the documentation reference? The bad answer is you will not find it. The good answer is: It is …
Secunia reports in advisory SA3675 about a buffer underflow vulnerability in the function
ngx_http_parse_complex_uri() of the nginx webserver and rates it as highly critical. Impacts may be a DoS attack or remote system access.