SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 
Changelog for ruby3.2-rubygem-rack-2.2-2.2.9-19.10.i586.rpm :

* Fri Mar 22 2024 Eduardo Navarro - update to version 2.2.9
* Return empty when parsing a multi-part POST with only one end delimiter. (https://github.com/rack/rack/pull/2104)
* Tue Feb 27 2024 Daniel Donisa - update to version 2.2.8.1
* Fixed ReDoS in Accept header parsing [CVE-2024-26146]
* Fixed ReDoS in Content Type header parsing [CVE-2024-25126]
* Reject Range headers which are too large [CVE-2024-26141]
* Tue Aug 01 2023 Jacob Michalskie - update to version 2.2.8
* Limit file extension length of multipart tempfiles (https://github.com/rack/rack/pull/2069)
* Fix inefficient assert pattern in Rack::Lint (https://github.com/rack/rack/pull/2101)
* Tue May 02 2023 Lukas Krause - update to version 2.2.7
* Correct the year number in the changelog (https://github.com/rack/rack/pull/2015)
* Support underscore in host names for Rack 2.2 (https://github.com/rack/rack/pull/2071)
* Wed Mar 15 2023 Daniel Donisa - updated to version 2.2.6.4 [CVE-2023-27539] Avoid ReDoS in header parsing
* Mon Mar 13 2023 Daniel Donisa - updated to version 2.2.6.3 [CVE-2023-27530] Possible DoS Vulnerability in Multipart MIME parsing
* Mon Jan 23 2023 Hendrik Vogelsang - updated to version 2.2.6.2 [CVE-2022-44570] Fix ReDoS in Rack::Utils.get_byte_ranges [CVE-2022-44571] Fix ReDoS vulnerability in multipart parser [CVE-2022-44572] Forbid control characters in attributes (also ReDoS) See installed CHANGELOG.md for more changes
* Mon Oct 10 2022 Stephan Kulow - Split into -2.2 suffix to make way for 3.0 update
* Fri Jul 08 2022 Manuel Schnitzer - updated to version 2.2.4
* Better support for lower case headers in `Rack::ETag` middleware. ([#1919](https://github.com/rack/rack/pull/1919), [AATTioquatix](https://github.com/ioquatix))
* Use custom exception on params too deep error. ([#1838](https://github.com/rack/rack/pull/1838), [AATTsimi](https://github.com/simi))
* Mon May 30 2022 Hendrik Vogelsang - updated to version 2.2.3.1 [CVE-2022-30123] Fix shell escaping issue in Common Logger [CVE-2022-30122] Restrict parsing of broken MIME attachments
 
ICM