Описание
There is a denial of service vulnerability in the header parsing component of Rack.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
ruby-rack | fixed | 2.2.6.4-1 | package |
Примечания
https://github.com/rack/rack/commit/231ef369ad0b542575fb36c74fcfcfabcf6c530c (v3.0.6.1)
https://github.com/rack/rack/commit/ee7919ea04303717858be1c3f16b406adc6d8cff (v2.2.6.4)
https://discuss.rubyonrails.org/t/cve-2023-27539-possible-denial-of-service-vulnerability-in-racks-header-parsing/82466
EPSS
Процентиль: 45%
0.00226
Низкий
Связанные уязвимости
CVSS3: 5.3
ubuntu
6 месяцев назад
There is a denial of service vulnerability in the header parsing component of Rack.
CVSS3: 5.3
redhat
больше 2 лет назад
There is a denial of service vulnerability in the header parsing component of Rack.
CVSS3: 5.3
nvd
6 месяцев назад
There is a denial of service vulnerability in the header parsing component of Rack.
github
больше 2 лет назад
Possible Denial of Service Vulnerability in Rack's header parsing
EPSS
Процентиль: 45%
0.00226
Низкий