Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rj7p-rfgp-852x

Опубликовано: 24 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Loop with Unreachable Exit Condition in Apache Thrift

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

Ссылки

Пакеты

Наименование

org.apache.thrift:libthrift

maven
Затронутые версииВерсия исправления

<= 0.12.0

0.13.0

EPSS

Процентиль: 71%
0.00698
Низкий

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

CVSS3: 5.9
redhat
почти 6 лет назад

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

CVSS3: 7.5
nvd
почти 6 лет назад

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

CVSS3: 7.5
msrc
около 1 года назад

Описание отсутствует

CVSS3: 7.5
debian
почти 6 лет назад

In Apache Thrift all versions up to and including 0.12.0, a server or ...

EPSS

Процентиль: 71%
0.00698
Низкий

7.5 High

CVSS3

Дефекты

CWE-835