Search CVE reports


Toggle filters

1 result


CVE-2015-3225

Low priority

Some fixes available 2 of 10

lib/rack/utils.rb in Rack before 1.5.4 and 1.6.x before 1.6.2, as used with Ruby on Rails 3.x and 4.x and other products, allows remote attackers to cause a denial of service (SystemStackError) via a request with a large parameter depth.

3 affected packages

librack-ruby, ruby-rack, ruby-rack1.4

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
librack-ruby Not in release Not in release Not in release
ruby-rack Not affected Not affected Not affected
ruby-rack1.4 Not in release Not in release Not in release
Show less packages