- Description
- The web-push crate before 0.10.3 for Rust allows a denial of service (memory consumption) in the built-in clients via a large integer in a Content-Length header.
- Source
- cve@mitre.org
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 4
- Impact score
- 1.4
- Exploitability score
- 2.2
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:L
- Severity
- MEDIUM
- cve@mitre.org
- CWE-130
- Hype score
- Not currently trending
CVE-2025-53604 Denial of Service in Rust web-push Crate via Large Content-Length Header https://t.co/P65capQn4v
@VulmonFeeds
5 Jul 2025
70 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-53604 The web-push crate before 0.10.3 for Rust allows a denial of service (memory consumption) in the built-in clients via a large integer in a Content-Length header. https://t.co/oowbDlzQQO
@CVEnew
5 Jul 2025
743 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes