CVE Database
/

CVE-2025-48431

Back to search

CVE-2025-48431

Published: Apr 28, 2026

Modified: Apr 28, 2026

PUBLISHED

Description

Mismatched Memory Management Routines vulnerability in Apache Thrift c_glib language bindings. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue. Description: Specially crafted requests can crash an c_glib-based Thrift server with a clean but fatal "free(): invalid pointer" error message.

VendorProductVersions

Apache Software Foundation

Apache Thrift

affected
0 - < 0.23.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now