<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T11:57:53.267544+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-07287</id>
    <title>bdu:2024-07287</title>
    <updated>2026-10-02T11:57:53.295446+00:00</updated>
    <content>bdu:2024-07287</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-07287"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2020-avi-780</id>
    <title>certfr-2020-avi-780 — De multiples vulnérabilités ont été découvertes dans IBM QRadar Network
Security. Elles permettent à un attaquant de pr…</title>
    <updated>2026-10-02T11:57:53.295506+00:00</updated>
    <content>certfr-2020-avi-780</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2020-avi-780"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2020-36743</id>
    <title>cnvd-2020-36743</title>
    <updated>2026-10-02T11:57:53.295537+00:00</updated>
    <content>cnvd-2020-36743</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2020-36743"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-237605</id>
    <title>EUVD-2026-237605</title>
    <updated>2026-10-02T11:57:53.295559+00:00</updated>
    <content>EUVD-2026-237605</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-237605"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-13817</id>
    <title>fkie_cve-2020-13817</title>
    <updated>2026-10-02T11:57:53.295578+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-13817"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fx6x-7xgx-2wwp</id>
    <title>GHSA-fx6x-7xgx-2wwp</title>
    <updated>2026-10-02T11:57:53.295624+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fx6x-7xgx-2wwp"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-13817</id>
    <title>gsd-2020-13817</title>
    <updated>2026-10-02T11:57:53.295653+00:00</updated>
    <content>gsd-2020-13817</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-13817"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-234-01</id>
    <title>ICSA-23-234-01 — Hitachi Energy AFF66x</title>
    <updated>2026-10-02T11:57:53.295671+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In uClibc and uClibc-ng before 1.0.39, incorrect handling of special characters in domain names DNS servers returned via gethostbyname, getaddrinfo, gethostbyaddr, and getnameinfo could lead to output of wrong hostnames (leading to domain hijacking) or injection into applications (leading to remote code execution, XSS, applications crashes, etc.). In other words, a validation step, which is expected in any stub resolver, does not occur. ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 could allow remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must rely on unauthenticated IPv4 time sources. There must be an off-path attacker who could query time from the victim's ntpd instance. ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 could allow an off-path attacker to block unauthenticated synchronization via a server mode packet with a spoofed source IP address because transmissions are rescheduled even when a packet lacks a valid origin timestamp. TCP_SKB_CB(skb)-&gt;tcp_gso_segs value is subject to an integer overflow in the Linux kernel when handling TCP selective acknowledgments (SACKs). A remote attacker could use this to cause a denial of service. This has been fixed in stable kernel releases 4.4.182, 4.9.182, 4.14.127, 4.19.52, 5.1.11, and is fixed in commit. A vulnerability named "non-responsive delegation attack" (NRDelegation attack) has been discovered in vari…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-234-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0934-1</id>
    <title>openSUSE-SU-2020:0934-1 — Security update for ntp</title>
    <updated>2026-10-02T11:57:53.295739+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for ntp</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2020:0934-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2020:14415-1</id>
    <title>SUSE-SU-2020:14415-1 — Security update for ntp</title>
    <updated>2026-10-02T11:57:53.295772+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for ntp</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2020:14415-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-13817</id>
    <title>UBUNTU-CVE-2020-13817</title>
    <updated>2026-10-02T11:57:53.295801+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: ntp, Ubuntu:16.04:LTS: ntp, Ubuntu:Pro:18.04:LTS: ntp, Ubuntu:Pro:20.04:LTS: ntp, Ubuntu:22.04:LTS: ntp</p>
<p>ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets. The victim must be relying on unauthenticated IPv4 time sources. There must be an off-path attacker who can query time from the victim's ntpd instance.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-13817"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-032</id>
    <title>VDE-2022-032 — AUMA: Multiple Vulnerabilities in Automation Runtime NTP Service</title>
    <updated>2026-10-02T11:57:53.295848+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SIMA2 Master Station features an NTP service based on ntpd, a reference implementation of the Network Time Protocol (NTP). Affected SIMA2 Master Stations with software version &lt; V2.6 include an outdated version of ntpd which is affected by a large number of vulnerabilities</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-032"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1737</id>
    <title>WID-SEC-W-2023-1737 — Juniper Patchday Juli 2023</title>
    <updated>2026-10-02T11:57:53.295914+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer aus dem angrenzenden Netzwerk oder ein entfernter anonymer oder lokaler Angreifer kann mehrere Schwachstellen in verschiedenen Juniper Produkten ausnutzen, um beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen und seine Privilegien zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1737"/>
  </entry>
</feed>
