REDHAT-BUG-2463407: Integer Overflow
Integer Overflow or Wraparound vulnerability in Apache Thrift TFramedTransport Go language implementation
This issue affects Apache Thrift: before 0.23.0.
Users are recommended to upgrade to version 0.23.0, which fixes the issue.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
apache/thriftto a version that resolves this vulnerability.Fixed in 0.23.0
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2463407?
The severity of REDHAT-BUG-2463407 is high with a score of 7.
How do I fix REDHAT-BUG-2463407?
To fix REDHAT-BUG-2463407, users should upgrade to Apache Thrift version 0.23.0 or later.
What type of vulnerability is REDHAT-BUG-2463407?
REDHAT-BUG-2463407 is an Integer Overflow or Wraparound vulnerability.
Which version of Apache Thrift is affected by REDHAT-BUG-2463407?
Apache Thrift versions before 0.23.0 are affected by REDHAT-BUG-2463407.
What is impacted by REDHAT-BUG-2463407?
The Integer Overflow vulnerability in REDHAT-BUG-2463407 impacts the Go language implementation of Apache Thrift.