Back to vendor advisories
Microsoft Security Response CenterCVE-2026-94639

Apache Thrift: Java `TSaslNonblockingServer`: residual of CVE-2026-61373 (thread-death black hole + no cross-connection budget)

High 2 CVEs Published Oct 7, 2026 at 1:40 AM UTC

Summary

Mariner

Products covered

  • azl3 thrift 0.24.0-1 on Azure Linux 3.0

Remediation

Release Notes

CVEs in this advisory 2

Updates

  1. Published by Microsoft Security Response Center

    The publication date reported by the vendor.

  2. Added to SecurityAlert

    We collected the advisory from the official source.