VDB
BDU%3A2019-04255
BDU%3A2019-04255
PUBLISHED
CVSS 5 MEDIUM
Уязвимость класса org.apache.thrift.transport.TSaslTransport языка описания интерфейсов Apache Thrift, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
Risk Scores
CVSS 2.0
5
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat Inc., Сообщество свободного программного обеспечения, Apache Software Foundation, F5 Networks, Inc., АО «НТЦ ИТ РОСА» | Red Hat JBoss Fuse, Debian GNU/Linux, Thrift, Traffix SDC, РОСА ХРОМ (запись в едином реестре российских программ №1607) |
Timeline
- Nov 26, 2019 CVE Published
- Nov 9, 2023 CVE Updated
- Mar 18, 2026 Distribution Patch
- Mar 18, 2026 Security Advisory
References
- http://www.openwall.com/lists/oss-security/2019/07/24/3 url
- http://www.securityfocus.com/bid/106551 url
- https://access.redhat.com/errata/RHSA-2019:2413 url
- https://lists.apache.org/thread.html/187684ac8b94d55256253f5220cb55e8bd568afdf9a8a86e9bbb66c9@%3Cdevnull.infra.apache.org%3E url
- https://lists.apache.org/thread.html/3d3b6849fcf4cd1e87703b3dde0d57aabeb9ba0193dc0cf3c97f545d@%3Ccommits.cassandra.apache.org%3E url
- https://lists.apache.org/thread.html/519eb0fd45642dcecd9ff74cb3e71c20a4753f7d82e2f07864b5108f@%3Cdev.drill.apache.org%3E url
- https://lists.apache.org/thread.html/6b07f6f618155c777191b4fad8ade0f0cf4ed4c12a1a746ce903d816@%3Ccommits.cassandra.apache.org%3E url
- https://lists.apache.org/thread.html/b0656d359c7d40ec9f39c8cc61bca66802ef9a2a12ee199f5b0c1442@%3Cdev.drill.apache.org%3E url
- https://lists.apache.org/thread.html/da5234b5e78f1c99190407f791dfe1bf6c58de8d30d15974a9669be3@%3Cuser.thrift.apache.org%3E url
- https://lists.apache.org/thread.html/dbe3a39b48900318ad44494e8721f786901ba4520cd412c7698f534f@%3Cdev.storm.apache.org%3E url
- https://lists.apache.org/thread.html/dfee89880c84874058c6a584d8128468f8d3c2ac25068ded91073adc@%3Cuser.storm.apache.org%3E url
- https://lists.apache.org/thread.html/e825ff2f4e129c0ecdb6a19030b53c1ccdf810a8980667628d0c6a80@%3Cannounce.apache.org%3E url
- https://lists.apache.org/thread.html/f9bc3e55f4e28d1dcd1a69aae6d53e609a758e34d2869b4d798e13cc@%3Cissues.drill.apache.org%3E url
- https://lists.debian.org/debian-lts-announce/2019/02/msg00008.html url
- https://support.f5.com/csp/article/K36361684 url
- https://www.oracle.com/technetwork/security-advisory/cpuoct2019-5072832.html url
- https://abf.rosalinux.ru/advisories/ROSA-SA-2023-2270 url
- https://access.redhat.com/security/cve/CVE-2018-1320 advisory