<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:40:38.821158+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2015-10929</id>
    <title>bdu:2015-10929</title>
    <updated>2026-10-03T05:40:38.833921+00:00</updated>
    <content>bdu:2015-10929</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2015-10929"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2015-3185</id>
    <title>Withdrawn: BELL-CVE-2015-3185 — CVE-2015-3185 does not affect BellSoft software</title>
    <updated>2026-10-03T05:40:38.833953+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2015-3185"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2015-avi-355</id>
    <title>certfr-2015-avi-355 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apple OS X&lt;/span&gt;. Certaines d'entre elles perm…</title>
    <updated>2026-10-03T05:40:38.833971+00:00</updated>
    <content>certfr-2015-avi-355</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2015-avi-355"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-04944</id>
    <title>cnvd-2015-04944</title>
    <updated>2026-10-03T05:40:38.833986+00:00</updated>
    <content>cnvd-2015-04944</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-04944"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-91672</id>
    <title>EUVD-2026-91672</title>
    <updated>2026-10-03T05:40:38.833996+00:00</updated>
    <content>EUVD-2026-91672</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-91672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-3185</id>
    <title>fkie_cve-2015-3185</title>
    <updated>2026-10-03T05:40:38.834005+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-3185"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-5fv4-m5x3-j32p</id>
    <title>GHSA-5fv4-m5x3-j32p</title>
    <updated>2026-10-03T05:40:38.834031+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-5fv4-m5x3-j32p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-3185</id>
    <title>gsd-2015-3185</title>
    <updated>2026-10-03T05:40:38.834046+00:00</updated>
    <content>gsd-2015-3185</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-3185"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:1666</id>
    <title>RHSA-2015:1666 — Red Hat Security Advisory: httpd24-httpd security update</title>
    <updated>2026-10-03T05:40:38.834055+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>httpd: Possible mod_lua crash due to websocket bug httpd: NULL pointer dereference crash with ErrorDocument 400 pointing to a local URL-path httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:1666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:1667</id>
    <title>RHSA-2015:1667 — Red Hat Security Advisory: httpd security update</title>
    <updated>2026-10-03T05:40:38.834074+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:1667"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:1851-1</id>
    <title>SUSE-SU-2015:1851-1 — Security update for apache2</title>
    <updated>2026-10-03T05:40:38.834089+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for apache2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:1851-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-3185</id>
    <title>UBUNTU-CVE-2015-3185</title>
    <updated>2026-10-03T05:40:38.834103+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: apache2</p>
<p>The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-3185"/>
  </entry>
</feed>
