Search CVE reports
41 – 50 of 49529 results
Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift all JS bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version...
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Loop with unreachable exit condition ('infinite loop'), Improperly controlled modification of object prototype attributes ('prototype pollution') vulnerability in Apache Thrift NodeJS bindings with TJSONProtocol. This issue...
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
In Bouncy Castle for Java before 1.86, a truncated OpenPGP encrypted message was accepted with no error reported, and on the SEIPD version 1 path with no integrity check performed at all. RFC 9580 sec. 13.7 permits an...
1 affected package
bouncycastle
| Package | 24.04 LTS |
|---|---|
| bouncycastle | Needs evaluation |
Improper handling of length parameter inconsistency, Uncaught exception, Inefficient Algorithmic Complexity, Memory allocation with excessive size value, Initialization of a resource with an insecure default vulnerability in...
4 affected packages
php-horde-thrift, python-thrift, ruby-thrift, thrift
| Package | 24.04 LTS |
|---|---|
| php-horde-thrift | Not in release |
| python-thrift | Not in release |
| ruby-thrift | Needs evaluation |
| thrift | Needs evaluation |
Uncontrolled Recursion vulnerability in Apache Thrift Dart and Java ME bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Use of uninitialized resource, Return of wrong status code vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Loop with unreachable exit condition ('infinite loop') vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Improper Validation of Certificate with Host Mismatch in the C++ and D libraries of Apache Thrift. Both libraries install a default access manager for client sockets — TSSLSocketFactory does so in C++, and the accessManager...
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Improper certificate validation, Return of wrong status code vulnerability in Apache Thrift python bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |
Improper certificate validation, Initialization of a resource with an insecure default vulnerability in Apache Thrift perl bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version...
1 affected package
thrift
| Package | 24.04 LTS |
|---|---|
| thrift | Needs evaluation |