Bug 2507448 (CVE-2026-55971)

Summary: CVE-2026-55971 thrift: Apache Thrift C++ bindings: Remote code execution via heap-based buffer overflow
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security <prodsec-ir-bot>
Status: NEW --- QA Contact:
Severity: high Docs Contact:
Priority: high    
Version: unspecifiedCC: aazores, alinfoot, amctagga, anujha, aoconnor, asoldano, bbaranow, bbrownin, bmaxwell, bniver, bstansbe, cmah, dlofthou, dtrifiro, eaguilar, ebaron, eglynn, flucifre, fmongiar, gmeno, gparvin, groman, istudens, ivassile, iweiss, janstey, jcantril, jjoyce, jmatsuok, jnethert, jpretori, jschluet, jtolenti, kaycoth, lhh, mbenjamin, mburns, mgarciac, mhackett, mosmerov, msvehla, mwringe, nwallace, pberan, pesilva, pjindal, pmackay, rbryant, rekumar, rhaigner, rojacob, rstancel, sostapov, thjenkin, vdosoudi, vereddy, vvoronko, weaton
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
A flaw was found in Apache Thrift C++ bindings. A remote, unauthenticated attacker can exploit a heap-based buffer overflow vulnerability without user interaction. This can lead to arbitrary code execution, allowing the attacker to gain full control over the affected system, compromise data, and cause a denial of service.
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2509717, 2509718    
Bug Blocks:    

Description OSIDB Bzimport 2026-07-27 12:02:21 UTC
Heap-based Buffer Overflow vulnerability in Apache Thrift C++ bindings.

This issue affects Apache Thrift: before 0.24.0.

Users are recommended to upgrade to version 0.24.0, which fixes the issue.