CVE Published: 12/02/2018 |
CVE Updated: 16/09/2024 |
CVE Year: 2016 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache Thrift Status : PUBLISHED
CVE-2016-5397 Description
The Apache Thrift Go client library exposed the potential during code generation for command injection due to using an external formatting tool. Affected Apache Thrift 0.9.3 and older, Fixed in Apache Thrift 0.10.0.