<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T01:56:51.749070+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2022:1988</id>
    <title>ALSA-2022:1988 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T01:56:52.579018+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: bpftool, AlmaLinux:8: kernel, AlmaLinux:8: kernel-abi-stablelists, AlmaLinux:8: kernel-core, AlmaLinux:8: kernel-cross-headers, AlmaLinux:8: kernel-debug, AlmaLinux:8: kernel-debug-core, AlmaLinux:8: kernel-debug-devel, AlmaLinux:8: kernel-debug-modules, AlmaLinux:8: kernel-debug-modules-extra and 10 more</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: fget: check that the fd still exists after getting a ref to it (CVE-2021-4083)</p>
<p>* kernel: avoid cyclic entity chains due to malformed USB descriptors (CVE-2020-0404)</p>
<p>* kernel: speculation on incompletely validated data on IBM Power9 (CVE-2020-4788)</p>
<p>* kernel: integer overflow in k_ascii() in drivers/tty/vt/keyboard.c (CVE-2020-13974)</p>
<p>* kernel: out-of-bounds read in bpf_skb_change_head() of filter.c due to a use-after-free (CVE-2021-0941)</p>
<p>* kernel: joydev: zero size passed to joydev_handle_JSIOCSBTNMAP() (CVE-2021-3612)</p>
<p>* kernel: reading /proc/sysvipc/shm does not scale with large shared memory segment counts (CVE-2021-3669)</p>
<p>* kernel: out-of-bound Read in qrtr_endpoint_post in net/qrtr/qrtr.c (CVE-2021-3743)</p>
<p>* kernel: crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744)</p>
<p>* kernel: possible use-after-free in bluetooth module (CVE-2021-3752)</p>
<p>* kernel: unaccounted ipc objects in Linux kernel lead to breaking memcg limits and DoS attacks (CVE-2021-3759)</p>
<p>* kernel: DoS in ccp_run_aes_gcm_cmd() function (CVE-2021-3764)</p>
<p>* kernel: sctp: Invalid chunks may be used to remotely remove existing associations (CVE-2021-3772)</p>
<p>* kernel: lack of port sanity checking in natd and netfilter leads to exploit of OpenVPN clients (CVE-2021-3773)</p>
<p>* kernel: possible leak or coruption of data residing on hugetlbfs (CVE-2021-4002)</p>
<p>* kernel: security regressi…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2022:1988"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-02182</id>
    <title>bdu:2021-02182</title>
    <updated>2026-10-03T01:56:52.579195+00:00</updated>
    <content>bdu:2021-02182</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-02182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2021-29154</id>
    <title>Withdrawn: BELL-CVE-2021-29154 — CVE-2021-29154 does not affect BellSoft software</title>
    <updated>2026-10-03T01:56:52.579232+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2021-29154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-265</id>
    <title>certfr-2021-avi-265 — De multiples vulnérabilités ont été découvertes dans le noyau Linux
d'Ubuntu. Certaines d'entre elles permettent à un a…</title>
    <updated>2026-10-03T01:56:52.579251+00:00</updated>
    <content>certfr-2021-avi-265</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2021-29871</id>
    <title>cnvd-2021-29871</title>
    <updated>2026-10-03T01:56:52.579266+00:00</updated>
    <content>cnvd-2021-29871</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2021-29871"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-26214</id>
    <title>EUVD-2026-26214</title>
    <updated>2026-10-03T01:56:52.579279+00:00</updated>
    <content>EUVD-2026-26214</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-26214"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-29154</id>
    <title>fkie_cve-2021-29154</title>
    <updated>2026-10-03T01:56:52.579289+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements, allowing them to execute arbitrary code within the kernel context. This affects arch/x86/net/bpf_jit_comp.c and arch/x86/net/bpf_jit_comp32.c.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-29154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q7mp-r58x-5fjf</id>
    <title>GHSA-q7mp-r58x-5fjf</title>
    <updated>2026-10-03T01:56:52.579313+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Incorrect computation of branch displacements in BPF JIT compilers the Linux kernel can be abused to execute arbitrary code in Kernel mode.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q7mp-r58x-5fjf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-29154</id>
    <title>gsd-2021-29154</title>
    <updated>2026-10-03T01:56:52.579327+00:00</updated>
    <content>gsd-2021-29154</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-29154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2021-29154</id>
    <title>msrc_CVE-2021-29154 — BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements allowing them…</title>
    <updated>2026-10-03T01:56:52.579337+00:00</updated>
    <content>msrc_CVE-2021-29154</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2021-29154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1176</id>
    <title>OESA-2021-1176 — kernel security update</title>
    <updated>2026-10-03T01:56:52.579356+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.



Security Fix(es):</p>
<p>An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-f232326f6966. This affects pointer types that do not define a ptr_limit.(CVE-2020-27170)</p>
<p>An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-10d2bb2e6b1d.(CVE-2020-27171)</p>
<p>rtw_wx_set_scan in drivers/staging/rtl8188eu/os_dep/ioctl_linux.c in the Linux kernel through 5.11.6 allows writing beyond the end of the -&amp;gt;ssid[] array. NOTE: from the perspective of kernel.org releases, CVE IDs are not normally used for drivers/staging/* (unfinished work); however, system integrators may have situations in which a drivers/staging issue is relevant to their own customer base.(CVE-2021-28660)</p>
<p>A race condition was discovered in get_old_root in fs/btrfs/ctree.c in the Linux kernel through 5.11.8. It allows attackers to cause a denial of service (BUG) because of a lack of locking on an extent buffer before a cloning operation, aka CID-dbcc7d57bffc.(CVE-2021-28964)</p>
<p>In dri…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1176"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0579-1</id>
    <title>openSUSE-SU-2021:0579-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T01:56:52.579428+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:0579-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3328</id>
    <title>RHSA-2021:3328 — Red Hat Security Advisory: kernel-rt security and bug fix update</title>
    <updated>2026-10-03T01:56:52.579455+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: out-of-bounds write in xt_compat_target_from_user() in net/netfilter/x_tables.c kernel: Local privilege escalation due to incorrect BPF JIT branch displacement computation kernel: lack a full memory barrier upon the assignment of a new table value in net/netfilter/x_tables.c and include/linux/netfilter/x_tables.h may lead to DoS kernel: race condition for removal of the HCI controller</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3328"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:1210-1</id>
    <title>SUSE-SU-2021:1210-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T01:56:52.579480+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:1210-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-29154</id>
    <title>UBUNTU-CVE-2021-29154</title>
    <updated>2026-10-03T01:56:52.579516+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:14.04:LTS: linux, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe and 70 more</p>
<p>BPF JIT compilers in the Linux kernel through 5.11.12 have incorrect computation of branch displacements, allowing them to execute arbitrary code within the kernel context. This affects arch/x86/net/bpf_jit_comp.c and arch/x86/net/bpf_jit_comp32.c.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-29154"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063</id>
    <title>WID-SEC-W-2023-0063 — Juniper Junos Space: Mehrere Schwachstellen</title>
    <updated>2026-10-03T01:56:52.579670+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer aus dem angrenzenden Netzwerk oder ein entfernter anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Juniper Junos Space ausnutzen, um Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, beliebigen Code auszuführen und seine Privilegien zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063"/>
  </entry>
</feed>
