CVE-2023-27539
MEDIUMDescription
There is a denial of service vulnerability in the header parsing component of Rack.
Is your site exposed to CVE-2023-27539?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Affected Products
| Vendor | Product |
|---|---|
| rack | rack |
| rack | rack |
| debian | debian_linux |
| debian | debian_linux |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2023-27539? +
How severe is CVE-2023-27539? +
What products are affected by CVE-2023-27539? +
How do I check if I'm vulnerable to CVE-2023-27539? +
Related Vulnerabilities
Rack is a modular Ruby web server interface. In versions prior to 2.2.19, 3.1.17, and 3.2.2, `Rack::Multipart::Parser` buffers the entire …
Rack is a modular Ruby web server interface. In versions prior to 2.2.19, 3.1.17, and 3.2.2, ``Rack::Multipart::Parser` stores non-file form …
Rack is a modular Ruby web server interface. In versions prior to 2.2.19, 3.1.17, and 3.2.2, `Rack::Multipart::Parser` can accumulate unbounded …
Rack is a modular Ruby web server interface. Prior to version 2.2.18, Rack::QueryParser enforces its params_limit only for parameters separated …
Rack provides an interface for developing web applications in Ruby. Prior to versions 2.2.13, 3.0.14, and 3.1.12, `Rack::Static` can serve …
Rack is a modular Ruby web server interface. Prior to versions 2.2.14, 3.0.16, and 3.1.14, `Rack::QueryParser` parses query strings and …