PT-2026-64890 · Apache · Apache Thrift
CVE-2026-58023
·
Published
2026-07-27
·
Updated
2026-08-01
CVSS v3.1
9.1
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Apache Thrift versions prior to 0.24.0
Description
An out-of-bounds read issue exists in the Apache Thrift c glib bindings, specifically occurring within the transport leftover-bytes path. An out-of-bounds read is a condition where a program reads data past the end of the intended buffer, which can lead to information disclosure or system instability.
Recommendations
Upgrade to version 0.24.0.
Exploit
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apache Thrift