Debian 12 — thin — vulnerability — patch and remediation guide
🟢 Low ⏱ 5–15 min Last verified: 17 October 2024 Affected versions: Debian 12 (bookworm) 📖 ~4 min read • Source: Debian Security Tracker Related CVEs: CVE-2009-3287 Upstream summary: lib/thin/connection.rb in Thin web server before 1.2.4 relies on the X-Forwarded-For header to determine the IP address of the client, which allows remote attackers to […]