Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-41636

Опубликовано: 28 апр. 2026
Источник: debian

Описание

Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
thriftfixed0.23.0-1experimentalpackage
thriftfixed0.23.0-3package

Примечания

  • https://www.openwall.com/lists/oss-security/2026/04/28/1

  • nodejs bindings not built in Debian package

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

CVSS3: 7.5
redhat
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

CVSS3: 7.5
nvd
3 месяца назад

Uncontrolled Recursion vulnerability in Apache Thrift Node.js bindings This issue affects Apache Thrift: before 0.23.0. Users are recommended to upgrade to version 0.23.0, which fixes the issue.

msrc
3 месяца назад

Apache Thrift: Node.js skip() recursion

github
3 месяца назад

Apache Thrift Node.js bindings vulnerable to Uncontrolled Recursion