File _patchinfo of Package patchinfo.33004

<patchinfo incident="33004">
  <issue tracker="cve" id="2024-26146"/>
  <issue tracker="cve" id="2024-25126"/>
  <issue tracker="cve" id="2024-26141"/>
  <issue tracker="bnc" id="1220248">VUL-0: CVE-2024-26146: rubygem-rack,rubygem-rack-1_4,rubygem-rack-1_6: rubygem-rack: Denial of Service vulnerability in Rack headers parsing routine</issue>
  <issue tracker="bnc" id="1220239">VUL-0: CVE-2024-25126: rubygem-rack,rubygem-rack-1_4,rubygem-rack-1_6: rubygem-rack: Denial of Service Vulnerability in Rack Content-Type Parsing</issue>
  <issue tracker="bnc" id="1220242">VUL-0: CVE-2024-26141: rubygem-rack,rubygem-rack-1_4,rubygem-rack-1_6: rubygem-rack: Denial of Service Vulnerability in Range request header parsing</issue>
  <packager>pgajdos</packager>
  <rating>important</rating>
  <category>security</category>
  <summary>Security update for rubygem-rack-1_4</summary>
  <description>This update for rubygem-rack-1_4 fixes the following issues:

- CVE-2024-25126: Fixed a Denial of Service Vulnerability in Rack Content-Type Parsing (bsc#1220239)
- CVE-2024-26141: Fixed a Denial of Service Vulnerability in Range request header parsing (bsc#1220242)
- CVE-2024-26146: Fixed a Denial of Service vulnerability in Rack headers parsing routine (bsc#1220248)
</description>
</patchinfo>
openSUSE Build Service is sponsored by