[jira] [Commented] (THRIFT-4928) Sensitive information about expected and actual reading lengths (len, got) is leaked from TIOStreamTransport to TTransport through a TTransportException

2019-09-07 Thread Jens Geyer (Jira)
[ https://issues.apache.org/jira/browse/THRIFT-4928?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16924873#comment-16924873 ] Jens Geyer commented on THRIFT-4928: let alone it's not only against the [established set of rules

[jira] [Commented] (THRIFT-4928) Sensitive information about expected and actual reading lengths (len, got) is leaked from TIOStreamTransport to TTransport through a TTransportException

2019-09-07 Thread pengzhouhu (Jira)
[ https://issues.apache.org/jira/browse/THRIFT-4928?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16924869#comment-16924869 ] pengzhouhu commented on THRIFT-4928: [~jensg][~xiaoqin.fu] i think push a public CVE before talk

[jira] [Commented] (THRIFT-4928) Sensitive information about expected and actual reading lengths (len, got) is leaked from TIOStreamTransport to TTransport through a TTransportException

2019-09-07 Thread Jens Geyer (Jira)
[ https://issues.apache.org/jira/browse/THRIFT-4928?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16924825#comment-16924825 ] Jens Geyer commented on THRIFT-4928: I'm not sure. I mean, we can (probably should) remove the

[jira] [Commented] (THRIFT-4928) Sensitive information about expected and actual reading lengths (len, got) is leaked from TIOStreamTransport to TTransport through a TTransportException

2019-09-07 Thread Jens Geyer (Jira)
[ https://issues.apache.org/jira/browse/THRIFT-4928?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel=16924824#comment-16924824 ] Jens Geyer commented on THRIFT-4928: The question re (5) was that YOU made a claim and asked