<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:10:34.714256+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-01112</id>
    <title>cnvd-2015-01112</title>
    <updated>2026-10-03T09:10:34.724282+00:00</updated>
    <content>cnvd-2015-01112</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-01112"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-103885</id>
    <title>EUVD-2026-103885</title>
    <updated>2026-10-03T09:10:34.724318+00:00</updated>
    <content>EUVD-2026-103885</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-103885"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2014-9423</id>
    <title>fkie_cve-2014-9423</title>
    <updated>2026-10-03T09:10:34.724332+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The svcauth_gss_accept_sec_context function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (aka krb5) 1.11.x through 1.11.5, 1.12.x through 1.12.2, and 1.13.x before 1.13.1 transmits uninitialized interposer data to clients, which allows remote attackers to obtain sensitive information from process heap memory by sniffing the network for data in a handle field.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2014-9423"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c8r5-76c4-8w9w</id>
    <title>GHSA-c8r5-76c4-8w9w</title>
    <updated>2026-10-03T09:10:34.724362+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The svcauth_gss_accept_sec_context function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (aka krb5) 1.11.x through 1.11.5, 1.12.x through 1.12.2, and 1.13.x before 1.13.1 transmits uninitialized interposer data to clients, which allows remote attackers to obtain sensitive information from process heap memory by sniffing the network for data in a handle field.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c8r5-76c4-8w9w"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2014-9423</id>
    <title>gsd-2014-9423</title>
    <updated>2026-10-03T09:10:34.724377+00:00</updated>
    <content>gsd-2014-9423</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2014-9423"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10004-1</id>
    <title>openSUSE-SU-2024:10004-1 — krb5-1.15-1.1 on GA media</title>
    <updated>2026-10-03T09:10:34.724388+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>krb5-1.15-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10004-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:0257-1</id>
    <title>SUSE-SU-2015:0257-1 — Security update for krb5</title>
    <updated>2026-10-03T09:10:34.724417+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for krb5</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:0257-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-9423</id>
    <title>UBUNTU-CVE-2014-9423</title>
    <updated>2026-10-03T09:10:34.724432+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: krb5</p>
<p>The svcauth_gss_accept_sec_context function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (aka krb5) 1.11.x through 1.11.5, 1.12.x through 1.12.2, and 1.13.x before 1.13.1 transmits uninitialized interposer data to clients, which allows remote attackers to obtain sensitive information from process heap memory by sniffing the network for data in a handle field.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-9423"/>
  </entry>
</feed>
