CVE-2026-49158
ADVISORY - debianSummary
Improper Handling of Highly Compressed Data (Data Amplification) vulnerability in Apache Thrift Ruby bindings. This issue affects Apache Thrift: before 0.24.0. Users are recommended to upgrade to version 0.24.0, which fixes the issue.
[experimental] - thrift 0.24.0-1
- thrift (unimportant) https://lists.apache.org/thread/fmjl8l415tj9zwlob8v2dr5hq1d0hts7 ruby bindings not built in Debian package
EPSS Score: 0.01097 (0.628)
Common Weakness Enumeration (CWE)
ADVISORY - redhat
Improper Handling of Highly Compressed Data (Data Amplification)
Sign in to Docker Scout
See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.
Sign in