Описание
A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an attacker to craft requests that can be abuse to cause multipart parsing to take longer than expected.
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support |
devel | not-affected | 2.2.7-1 |
esm-apps/bionic | ignored | intrusive backport |
esm-apps/focal | released | 2.0.7-2ubuntu0.1+esm4 |
esm-apps/jammy | released | 2.1.4-5ubuntu1+esm4 |
esm-apps/xenial | ignored | intrusive backport |
esm-infra-legacy/trusty | ignored | intrusive backport |
focal | ignored | end of standard support, was needed |
jammy | released | 2.1.4-5ubuntu1.1 |
kinetic | ignored | end of life, was needs-triage |
Показывать по
Ссылки на источники
EPSS
7.5 High
CVSS3
Связанные уязвимости
A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an attacker to craft requests that can be abuse to cause multipart parsing to take longer than expected.
A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an attacker to craft requests that can be abuse to cause multipart parsing to take longer than expected.
A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and ...
Rack has possible DoS Vulnerability in Multipart MIME parsing
EPSS
7.5 High
CVSS3