Apache Thrift Out-of-Bounds Read Vulnerability

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in Apache Thrift versions prior to 0.23.0. This vulnerability could potentially be exploited to read memory outside the intended bounds, which may lead to information disclosure or other unintended behavior.

Impact

Exploitation of this vulnerability could lead to out-of-bounds read, allowing attackers to access memory locations outside the intended boundaries, potentially leading to information disclosure or other unintended consequences.

Remediation

Users are advised to upgrade to Apache Thrift version 0.23.0 or later, which addresses this vulnerability.

Added: Apr 28, 2026, 10:31 AM
Updated: Apr 28, 2026, 10:31 AM

Vulnerability Rating

Custom Algorithm
spread
6.6
impact
0.6
exploitability
5.4
remediation
7.7
relevance
6.9
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.