Details
-
Bug
-
Status: Closed
-
Major
-
Resolution: Duplicate
-
3.0.1
-
None
-
None
Description
Image:
- spark:3.0.1
Components Affected:
- Apache Thrift
Recommendation:
- upgrade Apache Thrift
CVE:
Component Name | Component Version Name | Vulnerability | Fixed version |
Apache Thrift | 0.11.0-4. | CVE-2019-0205 | 0.13.0 |
Apache Thrift | 0.11.0-4. | CVE-2019-0210 | 0.13.0 |
Apache Thrift | 0.11.0-4. | CVE-2020-13949 | 0.14.1 |
Attachments
Issue Links
- duplicates
-
SPARK-37090 Upgrade libthrift to resolve security vulnerabilities
- Closed
- is related to
-
SPARK-47018 Upgrade built-in Hive to 2.3.10
- Resolved
- links to