An issue was discovered in the http crate before 0.1.20 for Rust. An integer overflow in HeaderMap::reserve() could result in denial of service (e.g., an infinite loop).
{ "binaries": [ { "binary_version": "0.1.19-1", "binary_name": "librust-http-dev" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2020/UBUNTU-CVE-2020-25574.json"
{ "binaries": [ { "binary_version": "0.2.9-1", "binary_name": "librust-http-dev" } ] }
{ "binaries": [ { "binary_version": "1.2.0-1", "binary_name": "librust-http-dev" } ] }