Apache Thrift Uncontrolled Recursion Vulnerability Leading to Stack Overflow

Vulnerability

A vulnerability allowing uncontrolled recursion, which can cause a stack overflow, has been identified in Apache Thrift versions prior to 0.23.0. This uncontrolled recursion vulnerability could potentially be exploited to disrupt normal application processing by causing excessive resource consumption or application crashes.

Impact

Exploitation of this vulnerability can lead to a stack overflow, causing a denial-of-service condition where the application crashes or becomes unresponsive.

Remediation

Users are advised to upgrade to Apache Thrift version 0.23.0 or later, which addresses this vulnerability.

Added: Apr 28, 2026, 10:29 AM
Updated: Apr 28, 2026, 10:29 AM

Vulnerability Rating

Custom Algorithm
spread
6.2
impact
2.5
exploitability
7.4
remediation
7.7
relevance
6.6
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.