RHSA-2026:49716: Important: RHEL AI 3.4 RPM runtime CVE fix - thrift
Important: RHEL AI 3.4 RPM runtime CVE fix - thrift
Other sources
RPM packages are internal build artifacts and not supported on their own. They are only supported as part of the Red Hat AI application platform.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/thriftto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/perl-thriftto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/python3-thriftto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/python3-thrift-debuginfoto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-debuginfoto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-debugsourceto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-develto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-devel-debuginfoto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-glibto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-glib-debuginfoto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-qtto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a - Upgrade
Upgrade
redhat/thrift-qt-debuginfoto a version that resolves this vulnerability.Fixed in 0.24.0-1.el9a
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:49716?
The severity of RHSA-2026:49716 is high, rated at 7.
What does RHSA-2026:49716 address?
RHSA-2026:49716 addresses a CVE fix for the thrift RPM packages used in RHEL AI 3.4.
How do I fix RHSA-2026:49716?
To fix RHSA-2026:49716, update the affected Red Hat AI packages to the latest version as per Red Hat's guidance.
What packages are affected by RHSA-2026:49716?
The affected packages in RHSA-2026:49716 include redhat/thrift, redhat/perl-thrift, and redhat/python3-thrift among others.
Is support provided for thrift RPM packages in RHSA-2026:49716?
Thrift RPM packages affected by RHSA-2026:49716 are internal build artifacts and are not supported on their own.