REDHAT-BUG-2463411: High severity Apache Apache Thrift vulnerability
Published Apr 28, 2026
·Updated
Improper Validation of Certificate with Host Mismatch vulnerability in Apache Thrift.
This issue affects Apache Thrift: before 0.23.0.
Users are recommended to upgrade to version 0.23.0, which fixes the issue.
Affected Software
1 affected component
Apache Apache Thrift<0.23.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache Thriftto a version that resolves this vulnerability.Fixed in 0.23.0
Event History
Apr 28, 2026
Data Sourced
via Red Hat·10:01 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2463411?
The severity of REDHAT-BUG-2463411 is high, rated at 7.
2
How do I fix REDHAT-BUG-2463411?
To fix REDHAT-BUG-2463411, upgrade Apache Thrift to version 0.23.0 or later.
3
What is REDHAT-BUG-2463411 about?
REDHAT-BUG-2463411 describes an improper validation of certificate with host mismatch vulnerability in Apache Thrift.
4
Which versions of Apache Thrift are affected by REDHAT-BUG-2463411?
Apache Thrift versions before 0.23.0 are affected by REDHAT-BUG-2463411.
5
When was REDHAT-BUG-2463411 published?
REDHAT-BUG-2463411 was published on April 28, 2026.