<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:57:50.794153+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bit-thrift-2026-45112</id>
    <title>BIT-thrift-2026-45112 — Apache Thrift: Unbounded Read Leading to Denial of Service</title>
    <updated>2026-10-02T14:57:50.899064+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Bitnami: thrift</p>
<p>Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings.</p>
<p>This issue affects Apache Thrift: from 0.19.0 before 0.24.0.</p>
<p>Users are recommended to upgrade to version 0.24.0, which fixes the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bit-thrift-2026-45112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-qf48371</id>
    <title>CLEANSTART-2026-QF48371 — Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings</title>
    <updated>2026-10-02T14:57:50.899141+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: spark-sc212-jdk17-py311</p>
<p>Security vulnerability affects the spark-sc212-jdk17-py311 package. Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-qf48371"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-341196</id>
    <title>EUVD-2026-341196</title>
    <updated>2026-10-02T14:57:50.899168+00:00</updated>
    <content>EUVD-2026-341196</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-341196"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-45112</id>
    <title>fkie_cve-2026-45112</title>
    <updated>2026-10-02T14:57:50.899183+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings.</p>
<p>This issue affects Apache Thrift: from 0.19.0 before 0.24.0.</p>
<p>Users are recommended to upgrade to version 0.24.0, which fixes the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-45112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-g9fj-fh28-776p</id>
    <title>GHSA-g9fj-fh28-776p</title>
    <updated>2026-10-02T14:57:50.899206+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings.</p>
<p>This issue affects Apache Thrift: from 0.19.0 before 0.24.0.</p>
<p>Users are recommended to upgrade to version 0.24.0, which fixes the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-g9fj-fh28-776p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11432-1</id>
    <title>openSUSE-SU-2026:11432-1 — libthrift-0_24_0-0.24.0-1.1 on GA media</title>
    <updated>2026-10-02T14:57:50.899266+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libthrift-0_24_0-0.24.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:11432-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:49837</id>
    <title>RHSA-2026:49837 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
    <updated>2026-10-02T14:57:50.899312+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>thrift: Apache Thrift Python bindings: Denial of Service via data amplification thrift: Apache Thrift: Denial of Service via infinite loop thrift: Apache Thrift: Denial of Service due to uncontrolled resource allocation thrift: Apache Thrift Ruby bindings: Denial of Service via improper handling of highly compressed data thrift: Apache Thrift Node.js bindings: Denial of Service due to inefficient algorithmic complexity and resource allocation thrift: Apache Thrift C++ bindings: Information disclosure due to buffer over-read vulnerability thrift: Apache Thrift C++ bindings: Remote code execution via heap-based buffer overflow thrift: Apache Thrift: Information disclosure and denial of service due to out-of-bounds read thrift: Apache Thrift Python bindings: Information disclosure due to improper certificate validation</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:49837"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45112</id>
    <title>UBUNTU-CVE-2026-45112</title>
    <updated>2026-10-02T14:57:50.899347+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: libthrift-java, Ubuntu:18.04:LTS: libthrift-java, Ubuntu:22.04:LTS: libthrift-java, Ubuntu:24.04:LTS: libthrift-java, Ubuntu:26.04:LTS: libthrift-java</p>
<p>Allocation of Resources Without Limits or Throttling vulnerability in Apache Thrift Java bindings. This issue affects Apache Thrift: from 0.19.0 before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2834</id>
    <title>WID-SEC-W-2026-2834 — Red Hat Build of Apache Camel for Quarkus (sshd-core, libthrift, org.hl7.fhir.utilities): Mehrere Schwachstellen</title>
    <updated>2026-10-02T14:57:50.899377+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux und Apache Camel ausnutzen, um einen Denial of Service Angriff durchzuführen, Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren und offenzulegen oder beliebigen Code auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2834"/>
  </entry>
</feed>
