CVE Database
/

CVE-2019-3553

Back to search

CVE-2019-3553

Published: Mar 10, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

C++ Facebook Thrift servers would not error upon receiving messages declaring containers of sizes larger than the payload. As a result, malicious clients could send short messages which would result in a large memory allocation, potentially leading to denial of service. This issue affects Facebook Thrift prior to v2020.02.03.00.

VendorProductVersions

Facebook

Facebook Thrift

unaffected
v2020.02.03.00 - < unspecified
affected
unspecified - < v2020.02.03.00

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now