In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Debian:unstable
passenger
.
Note: Versions mentioned in the description apply only to the upstream passenger
package and not the passenger
package as distributed by Debian
.
See How to fix?
for Debian:unstable
relevant fixed versions and status.
The http parser in Phusion Passenger 6.0.21 through 6.0.25 before 6.0.26 allows a denial of service during parsing of a request with an invalid HTTP method.