Untrusted accounts are able to crash the server using configs that represent a service export/import cycles. Upstream Reference: https://github.com/nats-io/nats-server/pull/1731
Created nats-server tracking bugs for this issue: Affects: fedora-all [bug 1944542]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2020-28466