rubygem-rack Info

rubygem-rack was added to epel10 repo on 2024-09-25
Page updated: 2025-10-13 13:58
Repo Status - Overall Status

Source NVR: rubygem-rack-2.2.4-7.el10_0 (2024-09-25)

Binary Packages

rubygem-rack rubygem-rack-1:2.2.4-7.el10_0
rubygem-rack-doc rubygem-rack-doc-1:2.2.4-7.el10_0

Bugs

2402984 NEW CVE-2025-59830 rubygem-rack: Rack QueryParser has an unsafe default allowing params_limit bypass via semicolon-separated parameters [epel-10]
2403521 NEW CVE-2025-61919 rubygem-rack: Unbounded read in `Rack::Request` form parsing can lead to memory exhaustion [epel-10]
2403526 NEW CVE-2025-61780 rubygem-rack: Improper handling of headers in `Rack::Sendfile` may allow proxy bypass [epel-10]

Install Failures