Memory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issu…
Medium CVSS 5.3
Summary
Memory Allocation with Excessive Size Value vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://lists.apache.org/thread/zj76dtwnbbs1m7z3focf4wd51pqpsmn9 Vendor Advisory
- https://access.redhat.com/errata/RHSA-2026:26586
- https://access.redhat.com/errata/RHSA-2026:42644
- https://access.redhat.com/security/cve/CVE-2026-43868
- https://bugzilla.redhat.com/show_bug.cgi?id=2466670
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43868.json
Timeline
- nvd_ingest NVD