CVE-2023-27539: Debian Linux

Medium severity, CVSS 5.3. EPSS: 1.1% chance of exploitation in the next 30 days.

There is a denial of service vulnerability in the header parsing component of Rack.

Affected products

  • Debian Debian Linux: version 10.0 only; version 11.0 only
  • Rack Rack: from 2.0.0, before 2.2.6.4 (fixed in 2.2.6.4); from 3.0.0, before 3.0.6.1 (fixed in 3.0.6.1)

Published 2025-01-09. Last modified 2026-06-17.