CVE-2020-13949: CVE-2026-43868: Apache Thrift: Rust implementation vulnerable to CVE-2020-13949 pattern
Apache Thrift is vulnerable to a denial of service, caused by improper input validation. By sending specially-crafted messages, a remote attacker could exploit this vulnerability to cause a large memory allocation.
Other sources
Applications using Thrift would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.
References: https://www.openwall.com/lists/oss-security/2021/02/11/2
— Red Hat
In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory allocation, potentially leading to denial of service.
— MITRE
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-13949?
CVE-2020-13949 is a vulnerability in Apache Thrift 0.9.3 to 0.13.0 that allows malicious RPC clients to send short messages resulting in a large memory allocation, potentially leading to denial of service.
What is the severity of CVE-2020-13949?
The severity of CVE-2020-13949 is high, with a severity value of 7.
Which software versions are affected by CVE-2020-13949?
Apache Thrift versions 0.9.3 to 0.13.0 are affected by CVE-2020-13949.
How can I fix CVE-2020-13949?
To fix CVE-2020-13949, you need to upgrade to Apache Thrift version 0.14.0 or later.
Where can I find more information about CVE-2020-13949?
You can find more information about CVE-2020-13949 at the following references: [Reference 1](https://www.openwall.com/lists/oss-security/2021/02/11/2), [Reference 2](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1928176), [Reference 3](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=1928175).