VDB
KO
MEDIUM 5.3

GHSA-2f9f-gq7v-9h6m

Apache Thrift has a Memory Allocation with Excessive Size Value Vulnerability

Details

Memory Allocation with Excessive Size Value vulnerability in Apache Thrift.

This issue affects Apache Thrift: before 0.23.0.

Users are recommended to upgrade to version [0.23.0](https://github.com/apache/thrift/releases/tag/v0.23.0), which fixes the issue.

Are you affected?

Enter the version of the package you're using.

Affected packages

crates.io / thrift
Introduced in: 0 Fixed in: 0.23.0

Upgrade thrift to 0.23.0 or newer (ecosystem crates.io).

References