<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T04:17:59.231441+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2019-9946</id>
    <title>Withdrawn: BELL-CVE-2019-9946 — CVE-2019-9946 does not affect BellSoft software</title>
    <updated>2026-10-03T04:17:59.240002+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2019-9946"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2025-ig62048</id>
    <title>CLEANSTART-2025-IG62048 — Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0</title>
    <updated>2026-10-03T04:17:59.240038+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: containerd</p>
<p>Security vulnerability affects the containerd package. Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2025-ig62048"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2019-23129</id>
    <title>cnvd-2019-23129</title>
    <updated>2026-10-03T04:17:59.240067+00:00</updated>
    <content>cnvd-2019-23129</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2019-23129"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-53253</id>
    <title>EUVD-2026-53253</title>
    <updated>2026-10-03T04:17:59.240081+00:00</updated>
    <content>EUVD-2026-53253</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-53253"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2019-9946</id>
    <title>fkie_cve-2019-9946</title>
    <updated>2026-10-03T04:17:59.240092+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of the iptables nat chains; which take precedence over the KUBE- SERVICES chain. Because of this, the HostPort/portmap rule could match incoming traffic even if there were better fitting, more specific service definition rules like NodePorts later in the chain. The issue is fixed in CNI 0.7.5 and Kubernetes 1.11.9, 1.12.7, 1.13.5, and 1.14.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2019-9946"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-6g96-g4m6-hw69</id>
    <title>GHSA-6g96-g4m6-hw69</title>
    <updated>2026-10-03T04:17:59.240116+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of the iptables nat chains; which take precedence over the KUBE- SERVICES chain. Because of this, the HostPort/portmap rule could match incoming traffic even if there were better fitting, more specific service definition rules like NodePorts later in the chain. The issue is fixed in CNI 0.7.5 and Kubernetes 1.11.9, 1.12.7, 1.13.5, and 1.14.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-6g96-g4m6-hw69"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2019-9946</id>
    <title>gsd-2019-9946</title>
    <updated>2026-10-03T04:17:59.240132+00:00</updated>
    <content>gsd-2019-9946</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2019-9946"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10884-1</id>
    <title>openSUSE-SU-2024:10884-1 — k3s-1.21.3+k3s1-1.2 on GA media</title>
    <updated>2026-10-03T04:17:59.240142+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>k3s-1.21.3+k3s1-1.2 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:10884-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2019:0862</id>
    <title>RHBA-2019:0862 — Red Hat Bug Fix Advisory: containernetworking-plugins bug fix and enhancement update</title>
    <updated>2026-10-03T04:17:59.240158+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kubernetes: Incorrect rule injection in CNI portmap plugin</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2019:0862"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-9946</id>
    <title>Withdrawn: UBUNTU-CVE-2019-9946</title>
    <updated>2026-10-03T04:17:59.240172+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:Pro:20.04:LTS: kubernetes, Ubuntu:22.04:LTS: kubernetes, Ubuntu:24.04:LTS: kubernetes</p>
<p>Cloud Native Computing Foundation (CNCF) CNI (Container Networking Interface) 0.7.4 has a network firewall misconfiguration which affects Kubernetes. The CNI 'portmap' plugin, used to setup HostPorts for CNI, inserts rules at the front of the iptables nat chains; which take precedence over the KUBE- SERVICES chain. Because of this, the HostPort/portmap rule could match incoming traffic even if there were better fitting, more specific service definition rules like NodePorts later in the chain. The issue is fixed in CNI 0.7.5 and Kubernetes 1.11.9, 1.12.7, 1.13.5, and 1.14.0.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-9946"/>
  </entry>
</feed>
