REDHAT-BUG-2466670: High severity Apache Thrift vulnerability
Published May 5, 2026
·Updated
Memory Allocation with Excessive Size Value vulnerability in Apache Thrift.
This issue affects Apache Thrift: before 0.23.0.
Users are recommended to upgrade to version 0.23.0, which fixes the issue.
Affected Software
1 affected component
Apache Thrift<0.23.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Apache Thriftto a version that resolves this vulnerability.Fixed in 0.23.0
Event History
May 5, 2026
Data Sourced
via Red Hat·09:01 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2466670?
The severity of REDHAT-BUG-2466670 is classified as high, with a score of 7.
2
How do I fix REDHAT-BUG-2466670?
To fix REDHAT-BUG-2466670, users should upgrade to Apache Thrift version 0.23.0 or later.
3
What software is affected by REDHAT-BUG-2466670?
Apache Thrift versions before 0.23.0 are affected by REDHAT-BUG-2466670.
4
What type of vulnerability is REDHAT-BUG-2466670?
REDHAT-BUG-2466670 is a Memory Allocation with Excessive Size Value vulnerability.
5
When was REDHAT-BUG-2466670 published?
REDHAT-BUG-2466670 was published on May 5, 2026.