Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-48144

Опубликовано: 27 июл. 2026
Источник: debian
EPSS Низкий

Описание

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
thriftfixed0.24.0-1experimentalpackage
thriftunfixedpackage
thriftno-dsatrixiepackage

Примечания

  • https://lists.apache.org/thread/2xoltfxgzf5jyhcwq6y07spts5cn6ppj

EPSS

Процентиль: 34%
0.00418
Низкий

Связанные уязвимости

CVSS3: 9.1
ubuntu
14 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 9.1
nvd
14 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

CVSS3: 9.1
msrc
4 дня назад

Apache Thrift: c_glib TLS Client Missing Hostname Verification

CVSS3: 9.1
github
14 дней назад

Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

EPSS

Процентиль: 34%
0.00418
Низкий