Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-13949

Опубликовано: 11 фев. 2021
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.

A flaw was found in libthrift. Applications using Thrift would not show an error upon receiving messages declaring containers of sizes larger than the payload. This results in malicious RPC clients with the ability to send short messages which would result in a large memory allocation, potentially leading to denial of service. The highest threat from this vulnerability is to system availability.

Отчет

  • A vulnerable version of the libthrift library is delivered in listed OpenShift Container Platform (OCP) and OpenShift Jaeger (Jaeger) components, but the vulnerable code is not invoked, therefore these components are affected but with impact Moderate.
  • For Red Hat OpenStack, because the fix would require a substantial amount of development and OpenDaylight is deprecated in all future versions (RHOSP10 was in tech preview), no update will be provided at this time for the RHOSP libthrift package.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Advanced Cluster Management for Kubernetes 2config-policy-controllerNot affected
Red Hat Advanced Cluster Management for Kubernetes 2endpoint-component-operatorNot affected
Red Hat Advanced Cluster Management for Kubernetes 2endpoint-operatorNot affected
Red Hat Advanced Cluster Management for Kubernetes 2governance-policy-spec-syncNot affected
Red Hat Advanced Cluster Management for Kubernetes 2governance-policy-status-syncNot affected
Red Hat Advanced Cluster Management for Kubernetes 2governance-policy-template-syncNot affected
Red Hat Advanced Cluster Management for Kubernetes 2hiveNot affected
Red Hat Advanced Cluster Management for Kubernetes 2iam-policy-controllerNot affected
Red Hat Advanced Cluster Management for Kubernetes 2multicloudhub-operatorNot affected
Red Hat Advanced Cluster Management for Kubernetes 2multicloud-operators-applicationNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=1928172libthrift: potential DoS when processing untrusted payloads

EPSS

Процентиль: 74%
0.00819
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 5 лет назад

In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.

CVSS3: 7.5
nvd
почти 5 лет назад

In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.

CVSS3: 7.5
debian
почти 5 лет назад

In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send sho ...

CVSS3: 7.5
github
почти 5 лет назад

Uncontrolled Resource Consumption in Apache Thrift

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость библиотеки Apache Thrift прикладного программного обеспечения Аврора Центр, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 74%
0.00819
Низкий

7.5 High

CVSS3