CVE-2013-0183: Rack Project Rack
Medium severity, CVSS 5.0. EPSS: 3.8% chance of exploitation in the next 30 days.
multipart/parser.rb in Rack 1.3.x before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to cause a denial of service (memory consumption and out-of-memory error) via a long string in a Multipart HTTP packet.
Affected products
- Rack Project Rack: version 1.3.0 only; version 1.3.1 only; version 1.3.2 only; version 1.3.3 only; version 1.3.4 only; version 1.3.5 only; …
Published 2013-03-01. Last modified 2026-06-16.