CVE detail
CVE-2026-41602
Integer Overflow or Wraparound vulnerability in Apache Thrift TFramedTransport Go language implementation This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 28.3 · diversity 19.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
16 source links · newest first
Information published.
vendormsrc.microsoft.comApr 30, 2026, 8:11 AM- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-41602.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comApr 28, 2026, 10:16 AM - https://bugzilla.redhat.com/show_bug.cgi?id=2463407bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/security/cve/CVE-2026-41602access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:36882access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:25273access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:24539access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:24503access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:23345access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:22423access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:22347access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:21769access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:14885access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - https://access.redhat.com/errata/RHSA-2026:14162access.redhat.com
No excerpt available.
Vendor Advisoryaccess.redhat.comApr 28, 2026, 10:16 AM - http://www.openwall.com/lists/oss-security/2026/04/28/6www.openwall.com
No excerpt available.
Exploitwww.openwall.comApr 28, 2026, 10:16 AM - https://lists.apache.org/thread/lb4j0zyd5f3g36cos0wql925przpnwqllists.apache.org
No excerpt available.
Vendor Advisorylists.apache.orgApr 28, 2026, 10:16 AM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-55969CVSS 8.7 · High
Integer Overflow or Wraparound vulnerability in Apache Thrift C++, c_glib, Go, netstd, Delphi and Haxe bindings. This issue affects Apache Thrift: before 0.24.0. Users are recom…
- CVE-2026-41605CVSS 7.3 · High
Integer Overflow or Wraparound vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes t…
- CVE-2026-64774CVSS 9.8 · Critical
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvO…
- CVE-2026-64766CVSS 7.8 · High
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvO…
- CVE-2026-64694CVSS 9.8 · Critical
An integer overflow was addressed with improved input validation. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause u…
- CVE-2026-43818CVSS 8.8 · High
An integer overflow was addressed with improved input validation. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. Pro…