QID 997567
Date Published: 2024-02-29
QID 997567: Rubygems (Rubygems) Security Update for rack (GHSA-22f2-v57c-j9cx)
The above regexp is subject to ReDos. 50K blank characters as a prefix to the header will take over 10s to split.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-22f2-v57c-j9cx for updates and patch information.
Vendor References
- GHSA-22f2-v57c-j9cx -
github.com/advisories/GHSA-22f2-v57c-j9cx
CVEs related to QID 997567
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-22f2-v57c-j9cx | rack |
|