Back to overview

CVE-2026-41608

Description
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Python bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.

Metadata

CVE ID
CVE-2026-41608
State
PUBLISHED
Assigner
apache
Reserved
2026-04-21 22:14 UTC
Published
2026-07-27 10:53 UTC
Last updated
2026-07-27 11:07 UTC
Primary CWE
CWE-409
CWE-409 Improper Handling of Highly Compressed Data (Data Am…
Vendor / Product
Apache Software Foundation / Apache Thrift
Sources
cve.org  ·  NVD

Severity & Metrics

No CVSS data available.

Affected products (1)
VendorProductPlatformVersions
Apache Software Foundation Apache Thrift 0 < 0.24.0
Weakness (CWE)
CWESourceDescription
CWE-409 cna CWE-409 Improper Handling of Highly Compressed Data (Data Amplification)
Back to overview