<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T12:56:45.181759+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2017-02150</id>
    <title>bdu:2017-02150</title>
    <updated>2026-10-03T12:56:45.381209+00:00</updated>
    <content>bdu:2017-02150</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2017-02150"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2017-7668</id>
    <title>Withdrawn: BELL-CVE-2017-7668 — CVE-2017-7668 does not affect BellSoft software</title>
    <updated>2026-10-03T12:56:45.381247+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2017-7668"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2017-avi-218</id>
    <title>certfr-2017-avi-218 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apache&lt;/span&gt;. Elles permettent à un attaquant…</title>
    <updated>2026-10-03T12:56:45.381265+00:00</updated>
    <content>certfr-2017-avi-218</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2017-avi-218"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2017-11803</id>
    <title>cnvd-2017-11803</title>
    <updated>2026-10-03T12:56:45.381282+00:00</updated>
    <content>cnvd-2017-11803</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2017-11803"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-74886</id>
    <title>EUVD-2026-74886</title>
    <updated>2026-10-03T12:56:45.381294+00:00</updated>
    <content>EUVD-2026-74886</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-74886"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2017-7668</id>
    <title>fkie_cve-2017-7668</title>
    <updated>2026-10-03T12:56:45.381304+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2017-7668"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-mcc7-rcr3-2rgr</id>
    <title>GHSA-mcc7-rcr3-2rgr</title>
    <updated>2026-10-03T12:56:45.381331+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-mcc7-rcr3-2rgr"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2017-7668</id>
    <title>gsd-2017-7668</title>
    <updated>2026-10-03T12:56:45.381347+00:00</updated>
    <content>gsd-2017-7668</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2017-7668"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:2479</id>
    <title>RHSA-2017:2479 — Red Hat Security Advisory: httpd security update</title>
    <updated>2026-10-03T12:56:45.381357+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:2479"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2017:2483</id>
    <title>RHSA-2017:2483 — Red Hat Security Advisory: httpd24-httpd security update</title>
    <updated>2026-10-03T12:56:45.381381+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: mod_http2 NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2017:2483"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2017:2907-1</id>
    <title>SUSE-SU-2017:2907-1 — Security update for apache2</title>
    <updated>2026-10-03T12:56:45.381401+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for apache2</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2017:2907-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7668</id>
    <title>UBUNTU-CVE-2017-7668</title>
    <updated>2026-10-03T12:56:45.381420+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: apache2, Ubuntu:16.04:LTS: apache2</p>
<p>The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7668"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0370</id>
    <title>WID-SEC-W-2025-0370 — Apple Mac OS: Mehrere Schwachstellen</title>
    <updated>2026-10-03T12:56:45.381441+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstelle in Apple Mac OS ausnutzen, um Code mit Kernel Privilegien auszuführen, Sicherheitsvorkehrungen zu umgehen, einen Denial of Service Angriff durchzuführen oder vertrauliche Daten einzusehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0370"/>
  </entry>
</feed>
