A DoS vulnerability exists in Rack <v3.0.4.2, <v2.2.6.3, <v2.1.4.3 and <v2.0.9.3 within in the Multipart MIME parsing code in which could allow an attacker to craft requests that can be abuse to cause multipart parsing to take longer than expected.
{ "binaries": [ { "binary_name": "librack-ruby", "binary_version": "1.5.2-3+deb8u3ubuntu1~esm10" }, { "binary_name": "librack-ruby1.8", "binary_version": "1.5.2-3+deb8u3ubuntu1~esm10" }, { "binary_name": "librack-ruby1.9.1", "binary_version": "1.5.2-3+deb8u3ubuntu1~esm10" }, { "binary_name": "ruby-rack", "binary_version": "1.5.2-3+deb8u3ubuntu1~esm10" } ] }