Loading HuntDB...

GHSA-rj7p-rfgp-852x

GitHub Security Advisory

Loop with Unreachable Exit Condition in Apache Thrift

✓ GitHub Reviewed HIGH Has CVE

Advisory Details

In Apache Thrift all versions up to and including 0.12.0, a server or client may run into an endless loop when feed with specific input data. Because the issue had already been partially fixed in version 0.11.0, depending on the installed version it affects only certain language bindings.

Affected Packages

Maven org.apache.thrift:libthrift
Affected versions: 0 (fixed in 0.13.0)

Related CVEs

Key Information

GHSA ID
GHSA-rj7p-rfgp-852x
Published
May 24, 2022 5:00 PM
Last Modified
June 27, 2022 4:12 PM
CVSS Score
7.5 /10
Primary Ecosystem
Maven
Primary Package
org.apache.thrift:libthrift
GitHub Reviewed
✓ Yes

Dataset

Last updated: September 12, 2025 6:34 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.