<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T11:46:29.818041+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-03232</id>
    <title>bdu:2019-03232</title>
    <updated>2026-10-04T11:46:29.961359+00:00</updated>
    <content>bdu:2019-03232</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-03232"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2019-13638</id>
    <title>Withdrawn: BELL-CVE-2019-13638 — CVE-2019-13638 does not affect BellSoft software</title>
    <updated>2026-10-04T11:46:29.961396+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2019-13638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2019-avi-451</id>
    <title>certfr-2019-avi-451 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
Red Hat. Certaines d'entre elles permettent à un…</title>
    <updated>2026-10-04T11:46:29.961414+00:00</updated>
    <content>certfr-2019-avi-451</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2019-avi-451"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-ao25763</id>
    <title>Withdrawn: CLEANSTART-2026-AO25763 — Security fixes in patch 2.7.6-r6</title>
    <updated>2026-10-04T11:46:29.961429+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: patch</p>
<p>Package patch version 2.7.6-r6 fixes 3 vulnerabilities: CVE-2018-1000156, CVE-2019-13638, CVE-2018-20969</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-ao25763"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-29134</id>
    <title>cnvd-2019-29134</title>
    <updated>2026-10-04T11:46:29.961457+00:00</updated>
    <content>cnvd-2019-29134</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-29134"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-55902</id>
    <title>EUVD-2026-55902</title>
    <updated>2026-10-04T11:46:29.961470+00:00</updated>
    <content>EUVD-2026-55902</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-55902"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-13638</id>
    <title>fkie_cve-2019-13638</title>
    <updated>2026-10-04T11:46:29.961479+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GNU patch through 2.7.6 is vulnerable to OS shell command injection that can be exploited by opening a crafted patch file that contains an ed style diff payload with shell metacharacters. The ed editor does not need to be present on the vulnerable system. This is different from CVE-2018-1000156.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-13638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-vqpq-8jvg-rwmx</id>
    <title>GHSA-vqpq-8jvg-rwmx</title>
    <updated>2026-10-04T11:46:29.961499+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>GNU patch through 2.7.6 is vulnerable to OS shell command injection that can be exploited by opening a crafted patch file that contains an ed style diff payload with shell metacharacters. The ed editor does not need to be present on the vulnerable system. This is different from CVE-2018-1000156.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-vqpq-8jvg-rwmx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-13638</id>
    <title>gsd-2019-13638</title>
    <updated>2026-10-04T11:46:29.961513+00:00</updated>
    <content>gsd-2019-13638</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-13638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2019-13638</id>
    <title>msrc_CVE-2019-13638 — GNU patch through 2.7.6 is vulnerable to OS shell command injection that can be exploited by opening a crafted patch fi…</title>
    <updated>2026-10-04T11:46:29.961523+00:00</updated>
    <content>msrc_CVE-2019-13638</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2019-13638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2019:2798</id>
    <title>RHSA-2019:2798 — Red Hat Security Advisory: patch security update</title>
    <updated>2026-10-04T11:46:29.961538+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>patch: do_ed_script in pch.c does not block strings beginning with a ! character patch: OS shell command injection when processing crafted patch files</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2019:2798"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2019:3757</id>
    <title>RHSA-2019:3757 — Red Hat Security Advisory: patch security update</title>
    <updated>2026-10-04T11:46:29.961554+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>patch: do_ed_script in pch.c does not block strings beginning with a ! character patch: OS shell command injection when processing crafted patch files</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2019:3757"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13638</id>
    <title>UBUNTU-CVE-2019-13638</title>
    <updated>2026-10-04T11:46:29.961568+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: patch, Ubuntu:16.04:LTS: patch, Ubuntu:18.04:LTS: patch</p>
<p>GNU patch through 2.7.6 is vulnerable to OS shell command injection that can be exploited by opening a crafted patch file that contains an ed style diff payload with shell metacharacters. The ed editor does not need to be present on the vulnerable system. This is different from CVE-2018-1000156.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13638"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-053</id>
    <title>VDE-2025-053 — Phoenix Contact: Multiple Vulnerabilities in PLCnext Firmware</title>
    <updated>2026-10-04T11:46:29.961590+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Coreutils: heap overflow in split --line-bytes with very long lines Unprivileged overlay + shiftfs read access Nano: running `chmod` and `chown` on the filename allows malicious user to replace the emergency file with a malicious symlink to a root-owned file SSL_select_next_proto buffer overread Remote Code Execution in pypa/setuptools</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-053"/>
  </entry>
</feed>
