Sploitus

CVE-2018-16470

No indexed exploits for CVE-2018-16470 yet

There is a possible DoS vulnerability in the multipart parser in Rack before 2.0.6. Specially crafted requests can cause the multipart parser to enter a pathological state, causing the parser to use CPU resources disproportionate to the request size.

Affected products
Rack, Suse
Rack Project Rack
= 2.0.4, 2.0.5
Fix
Available
CVSS 3.0
7.5 HIGH
EPSS
2.0% (79th percentile)
Weakness
CWE-400
NVD status
Modified
Published
2018-11-13
CVE-2018-16470 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-16470 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-16470 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.