<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T22:15:34.224399+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2019-avi-633</id>
    <title>certfr-2019-avi-633 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
Red Hat. Certaines d'entre elles permettent à un…</title>
    <updated>2026-10-04T22:15:34.303306+00:00</updated>
    <content>certfr-2019-avi-633</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2019-avi-633"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-01014</id>
    <title>cnvd-2020-01014</title>
    <updated>2026-10-04T22:15:34.303353+00:00</updated>
    <content>cnvd-2020-01014</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-01014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-58895</id>
    <title>EUVD-2026-58895</title>
    <updated>2026-10-04T22:15:34.303371+00:00</updated>
    <content>EUVD-2026-58895</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-58895"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-18801</id>
    <title>fkie_cve-2019-18801</title>
    <updated>2026-10-04T22:15:34.303383+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in Envoy 1.12.0. An untrusted remote client may send HTTP/2 requests that write to the heap outside of the request buffers when the upstream is HTTP/1. This may be used to corrupt nearby heap contents (leading to a query-of-death scenario) or may be used to bypass Envoy's access control mechanisms such as path based routing. An attacker can also modify requests from other users that happen to be proximal temporally and spatially.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-18801"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-288h-hv2q-fwrv</id>
    <title>GHSA-288h-hv2q-fwrv</title>
    <updated>2026-10-04T22:15:34.303417+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in Envoy 1.12.0. An untrusted remote client may send HTTP/2 requests that write to the heap outside of the request buffers when the upstream is HTTP/1. This may be used to corrupt nearby heap contents (leading to a query-of-death scenario) or may be used to bypass Envoy's access control mechanisms such as path based routing. An attacker can also modify requests from other users that happen to be proximal temporally and spatially.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-288h-hv2q-fwrv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-18801</id>
    <title>gsd-2019-18801</title>
    <updated>2026-10-04T22:15:34.303435+00:00</updated>
    <content>gsd-2019-18801</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-18801"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2019:4222</id>
    <title>RHSA-2019:4222 — Red Hat Security Advisory: Red Hat OpenShift Service Mesh 1.0.3 RPMs security update</title>
    <updated>2026-10-04T22:15:34.303446+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>envoy: an untrusted remote client may send HTTP/2 requests that write to the heap outside of the request buffers when the upstream is HTTP/1 envoy: malformed request header may cause bypass of route matchers resulting in escalation of privileges or information disclosure envoy: malformed HTTP request without the Host header may cause abnormal termination of the Envoy process</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2019:4222"/>
  </entry>
</feed>
