<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:41:03.473634+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-01235</id>
    <title>bdu:2021-01235</title>
    <updated>2026-10-03T21:41:03.597182+00:00</updated>
    <content>bdu:2021-01235</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-01235"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-772</id>
    <title>certfr-2021-avi-772 — De multiples vulnérabilités ont été découvertes dans les produits
Schneider. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T21:41:03.597221+00:00</updated>
    <content>certfr-2021-avi-772</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-772"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-43672</id>
    <title>EUVD-2026-43672</title>
    <updated>2026-10-03T21:41:03.597241+00:00</updated>
    <content>EUVD-2026-43672</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-43672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-17438</id>
    <title>fkie_cve-2020-17438</title>
    <updated>2026-10-03T21:41:03.597253+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in uIP 1.0, as used in Contiki 3.0 and other products. The code that reassembles fragmented packets fails to properly validate the total length of an incoming packet specified in its IP header, as well as the fragmentation offset value specified in the IP header. By crafting a packet with specific values of the IP header length and the fragmentation offset, attackers can write into the .bss section of the program (past the statically allocated buffer that is used for storing the fragmented data) and cause a denial of service in uip_reass() in uip.c, or possibly execute arbitrary code on some target architectures.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-17438"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wp96-g7r8-wxf4</id>
    <title>GHSA-wp96-g7r8-wxf4</title>
    <updated>2026-10-03T21:41:03.597284+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in uIP 1.0, as used in Contiki 3.0 and other products. The code that reassembles fragmented packets fails to properly validate the total length of an incoming packet specified in its IP header, as well as the fragmentation offset value specified in the IP header. By crafting a packet with specific values of the IP header length and the fragmentation offset, attackers can write into the .bss section of the program (past the statically allocated buffer that is used for storing the fragmented data) and cause a denial of service in uip_reass() in uip.c, or possibly execute arbitrary code on some target architectures.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wp96-g7r8-wxf4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-17438</id>
    <title>gsd-2020-17438</title>
    <updated>2026-10-03T21:41:03.597303+00:00</updated>
    <content>gsd-2020-17438</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-17438"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-20-343-01</id>
    <title>ICSA-20-343-01 — Multiple Embedded TCP/IP Stacks</title>
    <updated>2026-10-03T21:41:03.597314+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The function used in uIP-Contiki-OS to process IPv6 extension headers and extension header options can be forced into an infinite loop state due to unchecked header/option lengths.CVE-2020-13984 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). The function used in uIP-Contiki-OS to decapsulate RPL extension headers does not check for unsafe integer conversion when parsing the values provided in a header, allowing an attacker to corrupt memory.CVE-2020-13985 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). The function used in uIP-Contiki-OS to decapsulate RPL extension headers does not check the length value of an RPL extension header received, allowing an attacker to cause it to enter an infinite loop.CVE-2020-13986 has been assigned to this vulnerability. A CVSS v3 base score of 7.5 has been calculated; the CVSS vector string is (AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H). The function in open-iscsi, uIP-Contiki-OS, and uIP that parses incoming transport layer packets (TCP/UDP) does not check the length fields of packet headers against the data available in the packets. Given arbitrary lengths, an out-of-bounds memory read may be performed during the checksum computation.CVE-2020-13987 has been assigned to this vulnerability. A CVSS v3 base score of 8.2 has been calculat…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-20-343-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-ru-2021:1517-1</id>
    <title>SUSE-RU-2021:1517-1 — Recommended update for open-iscsi</title>
    <updated>2026-10-03T21:41:03.597425+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Recommended update for open-iscsi</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-ru-2021:1517-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1044</id>
    <title>WID-SEC-W-2022-1044 — TCP/IP Stack: Mehrere Schwachstellen</title>
    <updated>2026-10-03T21:41:03.597445+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in TCP/IP Stack ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen, einen Denial of Service Angriff durchzuführen, vertrauliche Daten einzusehen oder Daten zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1044"/>
  </entry>
</feed>
