<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:46:48.812652+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2018-17744</id>
    <title>cnvd-2018-17744</title>
    <updated>2026-10-03T05:46:48.822171+00:00</updated>
    <content>cnvd-2018-17744</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2018-17744"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-64933</id>
    <title>EUVD-2026-64933</title>
    <updated>2026-10-03T05:46:48.822210+00:00</updated>
    <content>EUVD-2026-64933</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-64933"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-10928</id>
    <title>fkie_cve-2018-10928</title>
    <updated>2026-10-03T05:46:48.822225+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to file paths outside of the gluster volume. An authenticated attacker could use this flaw to create arbitrary symlinks pointing anywhere on the server and execute arbitrary code on glusterfs server nodes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-10928"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-884c-j6hw-f37p</id>
    <title>GHSA-884c-j6hw-f37p</title>
    <updated>2026-10-03T05:46:48.822256+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to file paths outside of the gluster volume. An authenticated attacker could use this flaw to create arbitrary symlinks pointing anywhere on the server and execute arbitrary code on glusterfs server nodes.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-884c-j6hw-f37p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-10928</id>
    <title>gsd-2018-10928</title>
    <updated>2026-10-03T05:46:48.822273+00:00</updated>
    <content>gsd-2018-10928</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-10928"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0079-1</id>
    <title>openSUSE-SU-2020:0079-1 — Security update for glusterfs</title>
    <updated>2026-10-03T05:46:48.822284+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for glusterfs</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:0079-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2018:2607</id>
    <title>RHSA-2018:2607 — Red Hat Security Advisory: Red Hat Gluster Storage security, bug fix, and enhancement update</title>
    <updated>2026-10-03T05:46:48.822308+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>glusterfs: Unsanitized file names in debug/io-stats translator can allow remote attackers to execute arbitrary code glusterfs: Stack-based buffer overflow in server-rpc-fops.c allows remote attackers to execute arbitrary code glusterfs: Improper deserialization in dict.c:dict_unserialize() can allow attackers to read arbitrary memory glusterfs: Information Exposure in posix_get_file_contents function in posix-helpers.c glusterfs: remote denial of service of gluster volumes via posix_get_file_contents function in posix-helpers.c glusterfs: I/O to arbitrary devices on storage server glusterfs: Device files can be created in arbitrary locations glusterfs: File status information leak and denial of service glusterfs: Improper resolution of symlinks allows for privilege escalation glusterfs: Arbitrary file creation on storage server allows for execution of arbitrary code glusterfs: Files can be renamed outside volume</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2018:2607"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-10928</id>
    <title>UBUNTU-CVE-2018-10928</title>
    <updated>2026-10-03T05:46:48.822343+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: glusterfs, Ubuntu:Pro:16.04:LTS: glusterfs, Ubuntu:Pro:18.04:LTS: glusterfs</p>
<p>A flaw was found in RPC request using gfs3_symlink_req in glusterfs server which allows symlink destinations to point to file paths outside of the gluster volume. An authenticated attacker could use this flaw to create arbitrary symlinks pointing anywhere on the server and execute arbitrary code on glusterfs server nodes.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-10928"/>
  </entry>
</feed>
