ZeroHour

CVE-2019-0205

CVSS 3.1
7.5 high
EPSS
9%p95
Published
()
Modified
Description

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

Vendors
apacheredhatoracle
Products
thrift, jboss enterprise application platform, communications cloud native core network slice selection function
Weakness
CWE-835
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.