Improper handling of highly compressed data (data amplification) vulnerability in Apache Thrift Go bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.CreditsSylwester LachiewiczReferenceshttps://lists.apache.org/thread/33otcgbqd27wf6qq810q56znzbomnhg1https://lists.apache.org/thread/6hxll1jcnod9gfr225tz7my08lpj3jmt