Ubuntu Security Update USN-7507-1: Rack vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,811
Reaction score
74
Credits
-1,257
It was discovered that Rack incorrectly handled deleted rack sessions. An attacker could possibly use this issue to expose sensitive information or to gain unauthorized access to user accounts. (CVE-2025-32441) It was discovered that Rack incorrectly limited the number of parameters in a web request. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, Ubuntu 24.10, and Ubuntu 25.04. (CVE-2025-46727)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top