Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7vv7-v9gp-whmr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Python Facebook Thrift servers would not error upon receiving messages with containers of fields of unknown type. As a result, malicious clients could send short messages which would take a long time for the server to parse, potentially leading to denial of service. This issue affects Facebook Thrift prior to v2019.02.18.00.

Python Facebook Thrift servers would not error upon receiving messages with containers of fields of unknown type. As a result, malicious clients could send short messages which would take a long time for the server to parse, potentially leading to denial of service. This issue affects Facebook Thrift prior to v2019.02.18.00.

EPSS

Процентиль: 73%
0.00772
Низкий

Дефекты

CWE-20
CWE-755

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

Python Facebook Thrift servers would not error upon receiving messages with containers of fields of unknown type. As a result, malicious clients could send short messages which would take a long time for the server to parse, potentially leading to denial of service. This issue affects Facebook Thrift prior to v2019.02.18.00.

CVSS3: 7.5
nvd
почти 7 лет назад

Python Facebook Thrift servers would not error upon receiving messages with containers of fields of unknown type. As a result, malicious clients could send short messages which would take a long time for the server to parse, potentially leading to denial of service. This issue affects Facebook Thrift prior to v2019.02.18.00.

EPSS

Процентиль: 73%
0.00772
Низкий

Дефекты

CWE-20
CWE-755