summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorAaron Patterson <tenderlove@ruby-lang.org>2023-03-02 14:44:22 -0800
committerAaron Patterson <tenderlove@ruby-lang.org>2023-03-02 14:53:46 -0800
commit9996d403584fb7609708f582f7647868b4444949 (patch)
tree21dd32a2f535618052310d3a7c55c9e981681098
parent5f6e2fcbbdbff2dfaa21baa693e9d23d12ac1459 (diff)
downloadrack-2-0-stable.tar.gz
bump versionv2.0.9.32-0-stable
-rw-r--r--HISTORY.md4
-rw-r--r--lib/rack.rb2
2 files changed, 5 insertions, 1 deletions
diff --git a/HISTORY.md b/HISTORY.md
index 0466fa9d..640969ff 100644
--- a/HISTORY.md
+++ b/HISTORY.md
@@ -1,3 +1,7 @@
+Thu Mar 2 14:50:46 2023 Aaron Patterson <tenderlove@ruby-lang.org>
+
+ * [CVE-2023-27530] Introduce multipart_total_part_limit to limit total parts
+
Tue Jan 17 12:27:04 2023 Aaron Patterson <tenderlove@ruby-lang.org>
* [CVE-2022-44571] Fix ReDoS vulnerability in multipart parser
diff --git a/lib/rack.rb b/lib/rack.rb
index 77fa6867..9b44d707 100644
--- a/lib/rack.rb
+++ b/lib/rack.rb
@@ -18,7 +18,7 @@ module Rack
VERSION.join(".")
end
- RELEASE = "2.0.9.2"
+ RELEASE = "2.0.9.3"
# Return the Rack release as a dotted string.
def self.release