<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T17:47:59.979047+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2020-03318</id>
    <title>bdu:2020-03318</title>
    <updated>2026-10-02T17:47:59.991936+00:00</updated>
    <content>bdu:2020-03318</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2020-03318"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2019-13377</id>
    <title>Withdrawn: BELL-CVE-2019-13377 — CVE-2019-13377 does not affect BellSoft software</title>
    <updated>2026-10-02T17:47:59.991976+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2019-13377"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-42773</id>
    <title>cnvd-2019-42773</title>
    <updated>2026-10-02T17:47:59.991996+00:00</updated>
    <content>cnvd-2019-42773</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-42773"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-55699</id>
    <title>EUVD-2026-55699</title>
    <updated>2026-10-02T17:47:59.992008+00:00</updated>
    <content>EUVD-2026-55699</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-55699"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-13377</id>
    <title>fkie_cve-2019-13377</title>
    <updated>2026-10-02T17:47:59.992019+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-13377"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-m5xx-ghwp-mgmq</id>
    <title>GHSA-m5xx-ghwp-mgmq</title>
    <updated>2026-10-02T17:47:59.992047+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-m5xx-ghwp-mgmq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-13377</id>
    <title>gsd-2019-13377</title>
    <updated>2026-10-02T17:47:59.992062+00:00</updated>
    <content>gsd-2019-13377</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-13377"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1019</id>
    <title>OESA-2021-1019 — wpa_supplicant security update</title>
    <updated>2026-10-02T17:47:59.992072+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS: wpa_supplicant, openEuler:20.03-LTS-SP1: wpa_supplicant</p>
<p>wpa_supplicant is a WPA Supplicant for Linux, BSD, Mac OS X, and Windows with support for WPA and WPA2 (IEEE 802.11i / RSN). It is suitable for both desktop/laptop computers and embedded systems. Supplicant is the IEEE 802.1X/WPA component that is used in the client stations. It implements key negotiation with a WPA Authenticator and it controls the roaming and IEEE 802.11 authentication/association of the wlan driver.\r\n\r\n
Security Fix(es):\r\n\r\n
The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.(CVE-2019-13377)\r\n\r\n</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1019"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:2053-1</id>
    <title>openSUSE-SU-2020:2053-1 — Security update for wpa_supplicant</title>
    <updated>2026-10-02T17:47:59.992099+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for wpa_supplicant</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:2053-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:3380-1</id>
    <title>SUSE-SU-2020:3380-1 — Security update for wpa_supplicant</title>
    <updated>2026-10-02T17:47:59.992124+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for wpa_supplicant</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:3380-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13377</id>
    <title>UBUNTU-CVE-2019-13377</title>
    <updated>2026-10-02T17:47:59.992147+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: wpa</p>
<p>The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13377"/>
  </entry>
</feed>
