<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T22:24:52.882622+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2018-00002</id>
    <title>bdu:2018-00002</title>
    <updated>2026-10-02T22:24:54.400767+00:00</updated>
    <content>bdu:2018-00002</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2018-00002"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2017-5753</id>
    <title>Withdrawn: BELL-CVE-2017-5753 — CVE-2017-5753 does not affect BellSoft software</title>
    <updated>2026-10-02T22:24:54.400814+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2017-5753"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2018-ale-001</id>
    <title>certfr-2018-ale-001 — &lt;strong&gt;\[Mise à jour du 25/05/2018 : ajout de bulletins Microsoft (cf.
section Documentation)\]&lt;/strong&gt;

&lt;strong&gt;\[Mi…</title>
    <updated>2026-10-02T22:24:54.400869+00:00</updated>
    <content>certfr-2018-ale-001</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2018-ale-001"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2018-avi-004</id>
    <title>certfr-2018-avi-004 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
RedHat . Elles permettent à un attaquant de prov…</title>
    <updated>2026-10-02T22:24:54.400956+00:00</updated>
    <content>certfr-2018-avi-004</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2018-avi-004"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cisco-sa-20180104-cpusidechannel</id>
    <title>cisco-sa-20180104-cpusidechannel — CPU Side-Channel Information Disclosure Vulnerabilities</title>
    <updated>2026-10-02T22:24:54.400970+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>On January 3, 2018, researchers disclosed three vulnerabilities that take advantage of the implementation of speculative execution of instructions on many modern microprocessor architectures to perform side-channel information disclosure attacks. These vulnerabilities could allow an unprivileged local attacker, in specific circumstances, to read privileged memory belonging to other processes or memory allocated to  the operating system kernel.

The first two vulnerabilities, CVE-2017-5753 and CVE-2017-5715,  are collectively known as Spectre. The third vulnerability, CVE-2017-5754, is known as Meltdown. The vulnerabilities are all variants of the same attack and differ in the way that speculative execution is exploited.

To exploit any of these vulnerabilities, an attacker must be able to run crafted code on an affected device. Although the underlying CPU and operating system combination in a product or service may be affected by these vulnerabilities, the majority of Cisco products are closed systems that do not allow customers to run custom code and are, therefore, not vulnerable. There is no vector to exploit them. Cisco products are considered potentially vulnerable only if they allow customers to execute custom code side-by-side with Cisco code on the same microprocessor.

A Cisco product that may be deployed as a virtual machine or a container, even while not directly affected by any of these vulnerabilities, could be targeted by such attacks if the hosting envir…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cisco-sa-20180104-cpusidechannel"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-00304</id>
    <title>cnvd-2018-00304</title>
    <updated>2026-10-02T22:24:54.401017+00:00</updated>
    <content>cnvd-2018-00304</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-00304"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-322545</id>
    <title>EUVD-2026-322545</title>
    <updated>2026-10-02T22:24:54.401030+00:00</updated>
    <content>EUVD-2026-322545</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-322545"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-5753</id>
    <title>fkie_cve-2017-5753</title>
    <updated>2026-10-02T22:24:54.401042+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-5753"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-5753</id>
    <title>gsd-2017-5753</title>
    <updated>2026-10-02T22:24:54.401064+00:00</updated>
    <content>gsd-2017-5753</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-5753"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1212-1</id>
    <title>openSUSE-SU-2021:1212-1 — Security update for spectre-meltdown-checker</title>
    <updated>2026-10-02T22:24:54.401075+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for spectre-meltdown-checker</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:1212-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:0010</id>
    <title>RHSA-2018:0010 — Red Hat Security Advisory: kernel security update</title>
    <updated>2026-10-02T22:24:54.401093+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>hw: cpu: speculative execution bounds-check bypass hw: cpu: speculative execution permission faults handling</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:0010"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:0010-1</id>
    <title>SUSE-SU-2018:0010-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-02T22:24:54.401112+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:0010-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-5753</id>
    <title>UBUNTU-CVE-2017-5753</title>
    <updated>2026-10-02T22:24:54.401130+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: firefox, Ubuntu:14.04:LTS: linux, Ubuntu:14.04:LTS: linux-aws, Ubuntu:14.04:LTS: linux-lts-xenial, Ubuntu:14.04:LTS: nvidia-graphics-drivers-384, Ubuntu:16.04:LTS: firefox, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-euclid and 19 more</p>
<p>Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-5753"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-002</id>
    <title>VDE-2018-002 — Pepperl+Fuchs: HMI devices vulnerable to Meltdown and Spectre Attacks</title>
    <updated>2026-10-02T22:24:54.401186+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Critical vulnerabilities within several CPUs have been identified by security researchers. These hardware vulnerabilities allow programs to learn about the contents of a system's memory, using side-channel attacks. Potential attack vectors against these vulnerabilities have been published and dubbed Meltdown and Spectre. While programs are typically not permitted to read data from the OS kernel or from other programs, a malicious program can exploit Meltdown and Spectre to get hold of secrets stored in kernel memory or the memory of other programs executed on the same CPU. As a consequence, an exploit could allow attackers to get access to any sensitive data, including passwords or cryptographic keys.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-002"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2018-003</id>
    <title>VDE-2018-003 — PHOENIX CONTACT: addressing Meltdown and Spectre vulnerabilities</title>
    <updated>2026-10-02T22:24:54.401209+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Several CPUs manufactured by Intel, AMD or based on ARM technology may leak information due to their internal operation if attacked by specifically written software executed on the affected systems.</p>
<p>The information in this advisory is based on the statements of respective manufacturers.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2018-003"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2021-044</id>
    <title>VDE-2021-044 — Endress+Hauser: Multiple products affected by log4net vulnerability</title>
    <updated>2026-10-02T22:24:54.401228+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Apache log4net versions before 2.0.10 do not disable XML external entities when parsing log4net configuration files. This allows for XXE-based attacks in applications that accept attacker-controlled log4net configuration files.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2021-044"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0532</id>
    <title>WID-SEC-W-2022-0532 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-02T22:24:54.401244+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer oder authentisierter Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen, einen Denial of Service Angriff durchzuführen, Sicherheitsmechanismen zu umgehen, vertrauliche Daten einzusehen oder seine Privilegien zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0532"/>
  </entry>
</feed>
