[ 
https://issues.apache.org/jira/browse/SOLR-15507?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=18103844#comment-18103844
 ] 

Eric Pugh commented on SOLR-15507:
----------------------------------

this has been fixed in later version of solr.  I am adding a vex statement.

> Upgrade Apache Thrift to 0.14.1
> -------------------------------
>
>                 Key: SOLR-15507
>                 URL: https://issues.apache.org/jira/browse/SOLR-15507
>             Project: Solr
>          Issue Type: Improvement
>            Reporter: Somesh Dhal
>            Assignee: Eric Pugh
>            Priority: Major
>
> Solr 8.9.0 contains libthrift-0.13.0 for which the following Vulnerabilities 
> are identified.
> CVE-2020-13949 (BDSA-2021-0373)].
> Thrift should be updated to 0.14.1 to arrive so that this is handled.



--
This message was sent by Atlassian Jira
(v8.20.10#820010)

---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to