<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:43:18.069933+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2020-01889</id>
    <title>bdu:2020-01889</title>
    <updated>2026-10-03T05:43:18.103524+00:00</updated>
    <content>bdu:2020-01889</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2020-01889"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2018-16875</id>
    <title>Withdrawn: BELL-CVE-2018-16875 — CVE-2018-16875 does not affect BellSoft software</title>
    <updated>2026-10-03T05:43:18.103570+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2018-16875"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-68416</id>
    <title>EUVD-2026-68416</title>
    <updated>2026-10-03T05:43:18.103590+00:00</updated>
    <content>EUVD-2026-68416</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-68416"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2018-16875</id>
    <title>fkie_cve-2018-16875</title>
    <updated>2026-10-03T05:43:18.103602+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 does not limit the amount of work performed for each chain verification, which might allow attackers to craft pathological inputs leading to a CPU denial of service. Go TLS servers accepting client certificates and TLS clients are affected.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2018-16875"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8gx8-4ch8-vgp8</id>
    <title>GHSA-8gx8-4ch8-vgp8</title>
    <updated>2026-10-03T05:43:18.103629+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 does not limit the amount of work performed for each chain verification, which might allow attackers to craft pathological inputs leading to a CPU denial of service. Go TLS servers accepting client certificates and TLS clients are affected.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8gx8-4ch8-vgp8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2018-16875</id>
    <title>gsd-2018-16875</title>
    <updated>2026-10-03T05:43:18.103645+00:00</updated>
    <content>gsd-2018-16875</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2018-16875"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2018-16875</id>
    <title>msrc_CVE-2018-16875 — The crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 does not limit the amount of work performed for ea…</title>
    <updated>2026-10-03T05:43:18.103663+00:00</updated>
    <content>msrc_CVE-2018-16875</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2018-16875"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2019:0189-1</id>
    <title>openSUSE-SU-2019:0189-1 — Security update for docker</title>
    <updated>2026-10-03T05:43:18.103698+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for docker</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2019:0189-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2023-0052</id>
    <title>RUSTSEC-2023-0052 — webpki: CPU denial of service in certificate path building</title>
    <updated>2026-10-03T05:43:18.103728+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: webpki</p>
<p>When this crate is given a pathological certificate chain to validate, it will
spend CPU time exponential with the number of candidate certificates at each
step of path building.</p>
<p>Both TLS clients and TLS servers that accept client certificate are affected.</p>
<p>This was previously reported in
&lt;https://github.com/briansmith/webpki/issues/69&gt; and re-reported recently
by Luke Malinowski.</p>
<p>webpki 0.22.1 included a partial fix and webpki 0.22.2 added further fixes.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2023-0052"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2018:4297-1</id>
    <title>SUSE-SU-2018:4297-1 — Security update for containerd, docker and go</title>
    <updated>2026-10-03T05:43:18.103754+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for containerd, docker and go</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2018:4297-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-16875</id>
    <title>UBUNTU-CVE-2018-16875</title>
    <updated>2026-10-03T05:43:18.103770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: golang-1.10, Ubuntu:16.04:LTS: golang-1.10, Ubuntu:16.04:LTS: golang-1.6, Ubuntu:18.04:LTS: golang-1.10, Ubuntu:18.04:LTS: golang-1.8, Ubuntu:18.04:LTS: golang-1.9</p>
<p>The crypto/x509 package of Go before 1.10.6 and 1.11.x before 1.11.3 does not limit the amount of work performed for each chain verification, which might allow attackers to craft pathological inputs leading to a CPU denial of service. Go TLS servers accepting client certificates and TLS clients are affected.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-16875"/>
  </entry>
</feed>
