Описание
An issue was discovered in the http crate before 0.1.20 for Rust. An integer overflow in HeaderMap::reserve() could result in denial of service (e.g., an infinite loop).
Ссылки
- ExploitPatchThird Party Advisory
- Vendor Advisory
- ExploitPatchThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.1.20 (исключая)
cpe:2.3:a:hyper:http:*:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01814
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 5 лет назад
An issue was discovered in the http crate before 0.1.20 for Rust. An integer overflow in HeaderMap::reserve() could result in denial of service (e.g., an infinite loop).
CVSS3: 7.5
debian
больше 5 лет назад
An issue was discovered in the http crate before 0.1.20 for Rust. An i ...
CVSS3: 7.5
github
больше 4 лет назад
Integer Overflow/Infinite Loop in the http crate
EPSS
Процентиль: 82%
0.01814
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-190