Information on source package thrift

Available versions

ReleaseVersion
bullseye0.13.0-6
bookworm0.17.0-2
trixie0.19.0-4
forky0.22.0-3
sid0.22.0-4

Open issues

BugbullseyebookwormtrixieforkysidDescription
CVE-2026-41607vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableOut-of-bounds Read vulnerability in Apache Thrift. This issue affects ...
CVE-2026-41606vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableUncontrolled Recursion vulnerability in Apache Thrift. This issue aff ...
CVE-2026-41603vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableImproper Validation of Certificate with Host Mismatch vulnerability in ...
CVE-2026-41602vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableInteger Overflow or Wraparound vulnerability in Apache Thrift TFramedT ...
CVE-2025-48431vulnerablevulnerable (no DSA)vulnerable (no DSA)vulnerablevulnerableMismatched Memory Management Routines vulnerability in Apache Thrift c ...
CVE-2020-13949vulnerable (no DSA)fixedfixedfixedfixedIn Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send sho ...

Open unimportant issues

BugbullseyebookwormtrixieforkysidDescription
CVE-2026-43870vulnerablevulnerablevulnerablevulnerablevulnerableOrigin Validation Error, Improper Limitation of a Pathname to a Restri ...
CVE-2026-43869vulnerablevulnerablevulnerablevulnerablevulnerableImproper Validation of Certificate with Host Mismatch vulnerability in ...
CVE-2026-43868vulnerablevulnerablevulnerablevulnerablevulnerableMemory Allocation with Excessive Size Value vulnerability in Apache Th ...
CVE-2026-41636vulnerablevulnerablevulnerablevulnerablevulnerableUncontrolled Recursion vulnerability in Apache Thrift Node.js bindings ...
CVE-2026-41605vulnerablevulnerablevulnerablevulnerablevulnerableInteger Overflow or Wraparound vulnerability in Apache Thrift. This i ...
CVE-2026-41604vulnerablevulnerablevulnerablevulnerablevulnerableOut-of-bounds Read vulnerability in Apache Thrift. This issue affects ...

Resolved issues

BugDescription
CVE-2019-0210In Apache Thrift 0.9.3 to 0.12.0, a server implemented in Go using TJS ...
CVE-2019-0205In Apache Thrift all versions up to and including 0.12.0, a server or ...
CVE-2018-11798The Apache Thrift Node.js static web server in versions 0.9.2 through ...
CVE-2016-5397The Apache Thrift Go client library exposed the potential during code ...

Search for package or bug name: Reporting problems