Lucene search

K
osvGoogleOSV:GO-2021-0101
HistoryJul 28, 2021 - 6:08 p.m.

Panic due to out-of-bounds read in github.com/apache/thrift

2021-07-2818:08:05
Google
osv.dev
22
improper bounds check
malicious messages
denial of service

AI Score

8

Confidence

High

EPSS

0.003

Percentile

69.1%

Due to an improper bounds check, parsing maliciously crafted messages can cause panics. If this package is used to parse untrusted input, this may be used as a vector for a denial of service attack.