-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 02 May 2024 23:46:12 +0300 Source: ruby-rack Architecture: source Version: 2.1.4-3+deb11u2 Distribution: bullseye-security Urgency: medium Maintainer: Debian Ruby Team Changed-By: Adrian Bunk Closes: 1064516 Changes: ruby-rack (2.1.4-3+deb11u2) bullseye-security; urgency=medium . * Non-maintainer upload. * CVE-2024-25126: ReDoS in Content Type header parsing * CVE-2024-26141: Reject Range headers which are too large * CVE-2024-26146: ReDoS in Accept header parsing * Closes: #1064516 Checksums-Sha1: e840c3306e8cea596b611a04565f85e59bff2e48 2345 ruby-rack_2.1.4-3+deb11u2.dsc fb78585706dacc2ec7997b7c1af7d6320acd33c3 251772 ruby-rack_2.1.4.orig.tar.gz 398b6cb6427457998dd3e1d22db83437f2138d80 14780 ruby-rack_2.1.4-3+deb11u2.debian.tar.xz Checksums-Sha256: 49f54f8f3a7fadd1f2a6a9cb2a73800cf5b3a54e620005f214735f7715ff0c02 2345 ruby-rack_2.1.4-3+deb11u2.dsc f0b67c0a585d34a135c1434ac2d0bdbb9611726afafc005d9da91a451b1a7855 251772 ruby-rack_2.1.4.orig.tar.gz ff8697ec5799cd71a7995f601f67639aa747447fbadf7f1012e968597b18f965 14780 ruby-rack_2.1.4-3+deb11u2.debian.tar.xz Files: a2e328e5b24577e914bc62e8e28de814 2345 ruby optional ruby-rack_2.1.4-3+deb11u2.dsc 92633b2d98f6caa2fdaebcd0b15eb42d 251772 ruby optional ruby-rack_2.1.4.orig.tar.gz 862f1e6641c5f34de6a892857bdef19f 14780 ruby optional ruby-rack_2.1.4-3+deb11u2.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEOvp1f6xuoR0v9F3wiNJCh6LYmLEFAmY7eyoACgkQiNJCh6LY mLGHbw/+OP0+3O50ZlSIP2vbZUuw6+ddp56oMRl2V6/nNsuV7zrMp0KDZxPLAAnC AAkGBKRSHqQw6SaU2SFG2qs3MCe0nRNNT4/rKaGKe06J7o1BEgtFV9vcHEWzvamn zcL6bZIk8ybCKzGoZIC7SsDF6A9jDEu455GsLwGaD+Xfqpj2AJfdrFk05TZaHAKz 3PvUtM6wscwAis1uO1T3AFeGSmMPhT+4wmFY4VKMc3FB5/XoZpr/6xrqyJnrNK0b LC6Dhcl0mvkguSMgZTzaxRn+x9jOP27YGACz+ScJzT5czF1AJrYI1FAkoOF/V5ol mrBInyOWGIFHM5thCr6eGpiON/c5336qECUKhJZuxXEdUq9a40WAksiipaj4CI7v 6pwp3xYtS4c6y5yX1mpFkHdwwuN6OWiJ2h3OuB37Kqvcw3AN64grI/bMTJvUOIM2 S1qWxLZp59ha7iyhlYI7DD0jPe0oewmJmi/J+yQElfdoUFsLc7az0zwZ+WNaWz6f wKjk8yb2fnMdoZICF9vd01aBcij11+StqwxeUnI1pffSxQvg++BlR/gn/p/pRzJN nL137Gys72DeoQF6u/F5kW2sbRNVuDEi4Ds2BaxtfFW6mHEu7SdUz9DHod+OfVpT p5JQ8YUVKeRLlfX+QA/27QjAEp4SPc9aaIeFyUBVoh108vpIYxU= =kgwp -----END PGP SIGNATURE-----