Bug#918736: libthrift-java: CVE-2018-1320

2019-02-06 Thread Markus Koschany
Dear maintainer, I've uploaded a new version of libthrift-java, versioned as 0.9.1-2.1 to fix CVE-2018-1320. Please find attached the debdiff. Regards, Markus diff -Nru libthrift-java-0.9.1/debian/changelog libthrift-java-0.9.1/debian/changelog --- libthrift-java-0.9.1/debian/changelog 2

Bug#918736: libthrift-java: CVE-2018-1320

2019-01-08 Thread Salvatore Bonaccorso
Source: libthrift-java Version: 0.9.1-2 Severity: important Tags: patch security upstream Forwarded: https://issues.apache.org/jira/browse/THRIFT-4506 Hi, The following vulnerability was published for libthrift-java. CVE-2018-1320[0]: | Apache Thrift Java client library versions 0.5.0 through 0.