CVE-2013-0183
multipart/parser.rb in Rack 1.3.x before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to cause a denial of service (memory consumption and out-of-memory error) via a long string in a Multipart HTTP packet.
Date published : 2013-02-28
https://github.com/rack/rack/commit/548b9af2dc0059f4c0c19728624448d84de450ff