<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T10:33:59.790475+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:0558</id>
    <title>ALSA-2021:0558 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-04T10:34:00.579530+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: kernel-tools-libs-devel</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free (CVE-2020-29661)</p>
<p>* kernel: performance counters race condition use-after-free (CVE-2020-14351)</p>
<p>* kernel: ICMP rate limiting can be used for DNS poisoning attack (CVE-2020-25705)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Bug Fix(es):</p>
<p>* Final fixes + drop alpha_support flag requirement for Tigerlake (BZ#1882620)</p>
<p>* OVS complains Invalid Argument on TCP packets going into conntrack (BZ#1892744)</p>
<p>* BUG: using smp_processor_id() in preemptible [00000000] code: handler106/3082 (BZ#1893281)</p>
<p>* Icelake performance - add  intel_idle: Customize IceLake server support  to AlmaLinux-8 (BZ#1897183)</p>
<p>* [mlx5] IPV6 TOS rewrite flows are not getting offloaded in HW (BZ#1897688)</p>
<p>* AlmaLinux 8.3 SAS - multipathd fails to re-establish paths during controller random reset (BZ#1900112)</p>
<p>* AlmaLinux8.3 Beta - AlmaLinux8.3 hangs on dbginfo.sh execution, crash dump generated (mm-) (BZ#1903019)</p>
<p>* Win10 guest automatic reboot after migration in Win10 and WSL2 on AMD hosts (BZ#1905084)</p>
<p>* block, dm: fix IO splitting for stacked devices (BZ#1905136)</p>
<p>* Failed to hotplug scsi-hd disks (BZ#1905214)</p>
<p>* PCI quirk needed to prevent GPU hang (BZ#1906516)</p>
<p>* AlmaLinux8.2 -…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:0558"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-00005</id>
    <title>bdu:2021-00005</title>
    <updated>2026-10-04T10:34:00.579667+00:00</updated>
    <content>bdu:2021-00005</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-00005"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2020-29661</id>
    <title>Withdrawn: BELL-CVE-2020-29661 — CVE-2020-29661 does not affect BellSoft software</title>
    <updated>2026-10-04T10:34:00.579689+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2020-29661"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-021</id>
    <title>certfr-2021-avi-021 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-04T10:34:00.579705+00:00</updated>
    <content>certfr-2021-avi-021</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-021"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-47419</id>
    <title>EUVD-2026-47419</title>
    <updated>2026-10-04T10:34:00.579721+00:00</updated>
    <content>EUVD-2026-47419</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-47419"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2020-29661</id>
    <title>fkie_cve-2020-29661</title>
    <updated>2026-10-04T10:34:00.579733+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2020-29661"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p865-45gc-8x47</id>
    <title>GHSA-p865-45gc-8x47</title>
    <updated>2026-10-04T10:34:00.579756+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p865-45gc-8x47"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2020-29661</id>
    <title>gsd-2020-29661</title>
    <updated>2026-10-04T10:34:00.579771+00:00</updated>
    <content>gsd-2020-29661</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2020-29661"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-24-074-07</id>
    <title>ICSA-24-074-07 — Siemens SIMATIC</title>
    <updated>2026-10-04T10:34:00.579781+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An attacker could cause a crash or potentially execute arbitrary code by sending specially crafted DNS responses to the DNSmasq process. In order to exploit this vulnerability, an attacker must be able to trigger DNS requests from the device, and must be in a privileged position to inject malicious DNS responses. An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer in kernel land and cause an inet_csk_listen_stop general protection fault, or potentially execute arbitrary code under certain circumstances. The issue can be triggered as root (e.g., inside a default LXC container or with the CAP_NET_ADMIN capability) or after namespace unsharing. This occurs because sk_type and protocol are not checked in the appropriate part of the ip6_mroute_* functions. NOTE: this affects Linux distributions that use 4.9.x longterm kernels before 4.9.187. In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-10, Android-9 Android ID: A-123700107 In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to an empty mutable PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploit…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-24-074-07"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2020-29661</id>
    <title>msrc_CVE-2020-29661 — A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allow…</title>
    <updated>2026-10-04T10:34:00.580126+00:00</updated>
    <content>msrc_CVE-2020-29661</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2020-29661"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1003</id>
    <title>OESA-2021-1003 — kernel security update</title>
    <updated>2026-10-04T10:34:00.580145+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS: kernel, openEuler:20.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.</p>
<p>Security Fix(es):</p>
<p>A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-14351)</p>
<p>An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference, as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device, aka CID-073d0552ead5.(CVE-2020-27675)</p>
<p>A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access out of bounds. The highest threat from this vulnerability is to data confidentiality.(CVE-2020-25656)</p>
<p>Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.(CVE-2020-12352)</p>
<p>A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.(CVE-2020-29661)</p>
<p>A flaw was found in the w…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1003"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0060-1</id>
    <title>openSUSE-SU-2021:0060-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-04T10:34:00.580191+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:0060-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:0354</id>
    <title>RHSA-2021:0354 — Red Hat Security Advisory: kernel-alt security update</title>
    <updated>2026-10-04T10:34:00.580217+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: some ipv6 protocols not encrypted over ipsec tunnel kernel: use-after-free in fs/block_dev.c kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:0354"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-ru-2021:14663-1</id>
    <title>SUSE-RU-2021:14663-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-04T10:34:00.580238+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-ru-2021:14663-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-29661</id>
    <title>UBUNTU-CVE-2020-29661</title>
    <updated>2026-10-04T10:34:00.580253+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe and 67 more</p>
<p>A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-29661"/>
  </entry>
</feed>
