CVE-2025-61770 (CNNVD-202510-1052)
中文标题:
Rack 资源管理错误漏洞
英文标题:
Rack's unbounded multipart preamble buffering enables DoS (memory exhaustion)
漏洞描述
中文描述:
Rack是Rack开源的一个模块化的Ruby web服务器界面。 Rack 2.2.19之前版本、3.1.17之前版本和3.2.2之前版本存在资源管理错误漏洞,该漏洞源于Rack::Multipart::Parser对多部分前导码无限制缓冲,可能导致内存耗尽和进程终止。
英文描述:
Rack is a modular Ruby web server interface. In versions prior to 2.2.19, 3.1.17, and 3.2.2, `Rack::Multipart::Parser` buffers the entire multipart preamble (bytes before the first boundary) in memory without any size limit. A client can send a large preamble followed by a valid boundary, causing significant memory use and potential process termination due to out-of-memory (OOM) conditions. Remote attackers can trigger large transient memory spikes by including a long preamble in multipart/form-data requests. The impact scales with allowed request sizes and concurrency, potentially causing worker crashes or severe slowdown due to garbage collection. Versions 2.2.19, 3.1.17, and 3.2.2 enforce a preamble size limit (e.g., 16 KiB) or discard preamble data entirely. Workarounds include limiting total request body size at the proxy or web server level and monitoring memory and set per-process limits to prevent OOM conditions.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| rack | rack | < 2.2.19 | - | - |
cpe:2.3:a:rack:rack:<_2.2.19:*:*:*:*:*:*:*
|
| rack | rack | >= 3.1, < 3.1.17 | - | - |
cpe:2.3:a:rack:rack:>=_3.1,_<_3.1.17:*:*:*:*:*:*:*
|
| rack | rack | >= 3.2, < 3.2.2 | - | - |
cpe:2.3:a:rack:rack:>=_3.2,_<_3.2.2:*:*:*:*:*:*:*
|
| rack | rack | * | - | - |
cpe:2.3:a:rack:rack:*:*:*:*:*:ruby:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
参考链接
cve.org
cve.org
cve.org
cve.org
CVSS评分详情
3.1 (cna)
HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2025-61770 |
2025-11-11 15:23:33 | 2025-11-11 07:40:48 |
| NVD | nvd_CVE-2025-61770 |
2025-11-11 15:01:05 | 2025-11-11 07:48:35 |
| CNNVD | cnnvd_CNNVD-202510-1052 |
2025-11-11 15:12:28 | 2025-11-11 08:00:15 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 资源管理错误
- cnnvd_id: 未提取 -> CNNVD-202510-1052
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- affected_products_count: 3 -> 4
- data_sources: ['cve'] -> ['cve', 'nvd']