CVE-2026-93925: Apache Thrift: C++ `THeaderTransport::writeVarint32()` stack buffer overflow on a negative protocol id
Stack-based buffer overflow, Incorrect bitwise shift of integer vulnerability in Apache Thrift C++ THeaderProtocol.
This issue affects Apache Thrift: before 0.25.0.
Users are recommended to upgrade to version 0.25.0, which fixes the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache Thriftto a version that resolves this vulnerability.Fixed in 0.25.0
Event History
Frequently Asked Questions
Which deployments need remediation?
Apache Thrift deployments using the C++ THeaderProtocol in versions before 0.25.0 are affected. Upgrade to Apache Thrift 0.25.0.
What access does an attacker need to exploit this issue?
The provided CVSS vector indicates network attack access with low attack complexity, no privileges, no user interaction, and no additional attack requirements.
What is the primary security impact?
The CVSS vector identifies availability impact as high. It does not identify direct confidentiality or integrity impact for the vulnerable system.