<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:16:34.389518+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2016-01361</id>
    <title>bdu:2016-01361</title>
    <updated>2026-10-02T23:16:34.576713+00:00</updated>
    <content>bdu:2016-01361</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2016-01361"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2015-4644</id>
    <title>Withdrawn: BELL-CVE-2015-4644 — CVE-2015-4644 does not affect BellSoft software</title>
    <updated>2026-10-02T23:16:34.576777+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2015-4644"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2015-avi-265</id>
    <title>certfr-2015-avi-265 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;PHP&lt;/span&gt;. Elles permettent à un attaquant de…</title>
    <updated>2026-10-02T23:16:34.576799+00:00</updated>
    <content>certfr-2015-avi-265</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2015-avi-265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2015-03911</id>
    <title>cnvd-2015-03911</title>
    <updated>2026-10-02T23:16:34.576816+00:00</updated>
    <content>cnvd-2015-03911</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2015-03911"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-92740</id>
    <title>EUVD-2026-92740</title>
    <updated>2026-10-02T23:16:34.576828+00:00</updated>
    <content>EUVD-2026-92740</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-92740"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2015-4644</id>
    <title>fkie_cve-2015-4644</title>
    <updated>2026-10-02T23:16:34.576839+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The php_pgsql_meta_data function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not validate token extraction for table names, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1352.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2015-4644"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xhh6-8vwc-47w8</id>
    <title>GHSA-xhh6-8vwc-47w8</title>
    <updated>2026-10-02T23:16:34.576867+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The php_pgsql_meta_data function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not validate token extraction for table names, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1352.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xhh6-8vwc-47w8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2015-4644</id>
    <title>gsd-2015-4644</title>
    <updated>2026-10-02T23:16:34.576884+00:00</updated>
    <content>gsd-2015-4644</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2015-4644"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2015:1186</id>
    <title>RHSA-2015:1186 — Red Hat Security Advisory: php55-php security update</title>
    <updated>2026-10-02T23:16:34.576895+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>php: buffer over-read in Phar metadata parsing php: invalid pointer free() in phar_tar_process_metadata() php: buffer overflow in phar_set_inode() php: pipelined request executed in deinitialized interpreter under httpd 2.4 php: missing null byte checks for paths in various PHP extensions php: missing null byte checks for paths in various PHP extensions php: memory corruption in phar_parse_tarfile caused by empty entry file name php: integer overflow leading to heap overflow when reading FTP file listing php: multipart/form-data request parsing CPU usage DoS php: regressions in 5.4+ php: pcntl_exec() accepts paths with NUL character php: missing null byte checks for paths in DOM and GD extensions php: Incomplete Class unserialization type confusion php: exception:: getTraceAsString type confusion issue after unserialize php: denial of service when processing a crafted file with Fileinfo php: denial of service when processing a crafted file with Fileinfo php: integer overflow in ftp_genlist() resulting in heap overflow (improved fix for CVE-2015-4022) php: NULL pointer dereference in php_pgsql_meta_data()</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2015:1186"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2015:0370-1</id>
    <title>SUSE-SU-2015:0370-1 — Security update for php53</title>
    <updated>2026-10-02T23:16:34.576944+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for php53</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2015:0370-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-4644</id>
    <title>UBUNTU-CVE-2015-4644</title>
    <updated>2026-10-02T23:16:34.576988+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: php5</p>
<p>The php_pgsql_meta_data function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not validate token extraction for table names, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name.  NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1352.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-4644"/>
  </entry>
</feed>
