<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:16:08.834124+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2015-09905</id>
    <title>bdu:2015-09905</title>
    <updated>2026-10-02T23:16:08.971320+00:00</updated>
    <content>bdu:2015-09905</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2015-09905"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certa-2006-avi-563</id>
    <title>certa-2006-avi-563</title>
    <updated>2026-10-02T23:16:08.971359+00:00</updated>
    <content>certa-2006-avi-563</content>
    <link href="https://cve.radiocsirt.org/vuln/certa-2006-avi-563"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-147709</id>
    <title>EUVD-2026-147709</title>
    <updated>2026-10-02T23:16:08.971373+00:00</updated>
    <content>EUVD-2026-147709</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-147709"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2005-2969</id>
    <title>fkie_cve-2005-2969</title>
    <updated>2026-10-02T23:16:08.971384+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SSL/TLS server implementation in OpenSSL 0.9.7 before 0.9.7h and 0.9.8 before 0.9.8a, when using the SSL_OP_MSIE_SSLV2_RSA_PADDING option, disables a verification step that is required for preventing protocol version rollback attacks, which allows remote attackers to force a client and server to use a weaker protocol than needed via a man-in-the-middle attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2005-2969"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-h7wj-q4wv-chfq</id>
    <title>GHSA-h7wj-q4wv-chfq</title>
    <updated>2026-10-02T23:16:08.971413+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SSL/TLS server implementation in OpenSSL 0.9.7 before 0.9.7h and 0.9.8 before 0.9.8a, when using the SSL_OP_MSIE_SSLV2_RSA_PADDING option, disables a verification step that is required for preventing protocol version rollback attacks, which allows remote attackers to force a client and server to use a weaker protocol than needed via a man-in-the-middle attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-h7wj-q4wv-chfq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2005-2969</id>
    <title>gsd-2005-2969</title>
    <updated>2026-10-02T23:16:08.971429+00:00</updated>
    <content>gsd-2005-2969</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2005-2969"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/jvndb-2005-000601</id>
    <title>jvndb-2005-000601</title>
    <updated>2026-10-02T23:16:08.971440+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenSSL from OpenSSL Project contains a version rollback vulnerability. If a specific option is used on a server running OpenSSL, an attacker can force the client and the server to negotiate the SSL 2.0 protocol even if these parties both request TLS 1.0 protocol by crafting an attack on the communication path.

RFC 2246, defining the TLS protocol, defines that when TLS 1.0 is available, SSL 2.0 should not be used in order to avoid version rollback attacks.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/jvndb-2005-000601"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2005:800</id>
    <title>RHSA-2005:800 — Red Hat Security Advisory: openssl security update</title>
    <updated>2026-10-02T23:16:08.971457+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>security flaw openssl mitm downgrade attack</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2005:800"/>
  </entry>
</feed>
