CVE detail
CVE-2025-48431
Mismatched Memory Management Routines vulnerability in Apache Thrift c_glib language bindings. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue. Description: Specially crafted requests can crash an c_glib-based Thrift server with a clean but fatal "free(): invalid pointer" error message.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 24.9 · diversity 19.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
11 source links · newest first
- CVE-2025-48431 Apache Thrift: Specially crafted input can crash a c_glib Thrift server with invalid pointer error.Microsoft MSRC
Information published.
vendormsrc.microsoft.comApr 30, 2026, 8:10 AM - https://security.access.redhat.com/data/csaf/v2/vex/2025/cve-2025-48431.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comApr 28, 2026, 10:16 AM - https://bugzilla.redhat.com/show_bug.cgi?id=2463410bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/security/cve/CVE-2025-48431access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:36882access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:28010access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:27126access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:25273access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:24539access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - http://www.openwall.com/lists/oss-security/2026/04/28/8www.openwall.com
No excerpt available.
Exploitwww.openwall.comApr 28, 2026, 10:16 AM - https://lists.apache.org/thread/lb4j0zyd5f3g36cos0wql925przpnwqllists.apache.org
No excerpt available.
Vendor Advisorylists.apache.orgApr 28, 2026, 10:16 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2024-2955CVSS 7.8 · High
T.38 dissector crash in Wireshark 4.2.0 to 4.0.3 and 4.0.0 to 4.0.13 allows denial of service via packet injection or crafted capture file
- CVE-2026-15718CVSS 4.3 · Medium
We are aware that exploit code for this is public however we are not aware of any attacks in the wild abusing this flaw. This vulnerability was fixed in Firefox 152.0.6, Firefox E…
- CVE-2026-57248CVSS 7.8 · High
When the application opens a PDF file and JavaScript writes annotation attributes, there is a lack of sufficient object type and argument checks. As a result, due to the damage to…
- CVE-2026-53000CVSS 7.8 · High
In the Linux kernel, the following vulnerability has been resolved: netfilter: nat: use kfree_rcu to release ops Florian Westphal says: "Historically this is not an issue, even…
- CVE-2026-52993CVSS 9.8 · Critical
In the Linux kernel, the following vulnerability has been resolved: tipc: fix double-free in tipc_buf_append() tipc_msg_validate() can potentially reallocate the skb it is valid…
- CVE-2026-9516CVSS 7.5 · High
Cpanel::JSON::XS versions before 4.41 for Perl allow denial of service via UTF-8 BOM prefixed input when a decode filter callback throws. To skip a leading 3-byte UTF-8 BOM, deco…