Loop with Unreachable Exit Condition in Apache Thrift
High severity
GitHub Reviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Oct 29, 2019
Published to the GitHub Advisory Database
May 24, 2022
Reviewed
Jun 27, 2022
Last updated
Jan 27, 2023
In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.
References