<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T19:41:43.512980+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-01945</id>
    <title>bdu:2019-01945</title>
    <updated>2026-10-02T19:41:43.898548+00:00</updated>
    <content>bdu:2019-01945</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-01945"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-791</id>
    <title>certfr-2021-avi-791 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T19:41:43.898594+00:00</updated>
    <content>certfr-2021-avi-791</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-791"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-243499</id>
    <title>EUVD-2026-243499</title>
    <updated>2026-10-02T19:41:43.898615+00:00</updated>
    <content>EUVD-2026-243499</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-243499"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-3842</id>
    <title>fkie_cve-2019-3842</title>
    <updated>2026-10-02T19:41:43.898627+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-3842"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c23j-qp89-q76c</id>
    <title>GHSA-c23j-qp89-q76c</title>
    <updated>2026-10-02T19:41:43.898675+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c23j-qp89-q76c"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-3842</id>
    <title>gsd-2019-3842</title>
    <updated>2026-10-02T19:41:43.898693+00:00</updated>
    <content>gsd-2019-3842</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-3842"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2019-3842</id>
    <title>msrc_CVE-2019-3842 — In systemd before v242-rc4 it was discovered that pam_systemd does not properly sanitize the environment before using t…</title>
    <updated>2026-10-02T19:41:43.898704+00:00</updated>
    <content>msrc_CVE-2019-3842</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2019-3842"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:11420-1</id>
    <title>openSUSE-SU-2024:11420-1 — libsystemd0-249.4-2.2 on GA media</title>
    <updated>2026-10-02T19:41:43.898721+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libsystemd0-249.4-2.2 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:11420-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3900</id>
    <title>RHSA-2021:3900 — Red Hat Security Advisory: systemd security update</title>
    <updated>2026-10-02T19:41:43.898748+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>systemd: Spoofing of XDG_SEAT allows for actions to be checked against "allow_active" instead of "allow_any" systemd: Mishandles numerical usernames beginning with decimal digits or 0x followed by hexadecimal digits</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3900"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2019:1265-1</id>
    <title>SUSE-SU-2019:1265-1 — Security update for systemd</title>
    <updated>2026-10-02T19:41:43.898770+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for systemd</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2019:1265-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-3842</id>
    <title>UBUNTU-CVE-2019-3842</title>
    <updated>2026-10-02T19:41:43.898786+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: systemd, Ubuntu:16.04:LTS: systemd, Ubuntu:18.04:LTS: systemd</p>
<p>In systemd before v242-rc4, it was discovered that pam_systemd does not properly sanitize the environment before using the XDG_SEAT variable. It is possible for an attacker, in some particular configurations, to set a XDG_SEAT environment variable which allows for commands to be checked against polkit policies using the "allow_active" element rather than "allow_any".</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-3842"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0227</id>
    <title>WID-SEC-W-2025-0227 — IBM QRadar SIEM: Mehrere Schwachstellen</title>
    <updated>2026-10-02T19:41:43.898810+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in IBM QRadar SIEM ausnutzen, um seine Privilegien zu erweitern, Administratorrechte zu erlangen, beliebigen Programmcode auszuführen, Informationen offenzulegen, Dateien zu manipulieren oder Sicherheitsvorkehrungen zu umgehen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0227"/>
  </entry>
</feed>
