<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T05:26:58.922995+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:4326</id>
    <title>ALSA-2021:4326 — Moderate: libX11 security update</title>
    <updated>2026-10-04T05:26:59.223524+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: libX11, AlmaLinux:8: libX11-common, AlmaLinux:8: libX11-devel, AlmaLinux:8: libX11-xcb</p>
<p>The libX11 packages contain the core X11 protocol client library.</p>
<p>Security Fix(es):</p>
<p>* libX11: missing request length checks (CVE-2021-31535)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Additional Changes:</p>
<p>For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:4326"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-02747</id>
    <title>bdu:2021-02747</title>
    <updated>2026-10-04T05:26:59.223594+00:00</updated>
    <content>bdu:2021-02747</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-02747"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2021-31535</id>
    <title>Withdrawn: BELL-CVE-2021-31535 — CVE-2021-31535 does not affect BellSoft software</title>
    <updated>2026-10-04T05:26:59.223611+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2021-31535"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2021-avi-850</id>
    <title>certfr-2021-avi-850 — De multiples vulnérabilités ont été découvertes dans IBM QRadar. Elles
permettent à un attaquant de provoquer un déni d…</title>
    <updated>2026-10-04T05:26:59.223626+00:00</updated>
    <content>certfr-2021-avi-850</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2021-avi-850"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-27509</id>
    <title>EUVD-2026-27509</title>
    <updated>2026-10-04T05:26:59.223640+00:00</updated>
    <content>EUVD-2026-27509</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-27509"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-31535</id>
    <title>fkie_cve-2021-31535</title>
    <updated>2026-10-04T05:26:59.223651+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-31535"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3vp2-rf63-rc8p</id>
    <title>GHSA-3vp2-rf63-rc8p</title>
    <updated>2026-10-04T05:26:59.223674+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3vp2-rf63-rc8p"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-31535</id>
    <title>gsd-2021-31535</title>
    <updated>2026-10-04T05:26:59.223692+00:00</updated>
    <content>gsd-2021-31535</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-31535"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1235</id>
    <title>OESA-2021-1235 — libX11 security update</title>
    <updated>2026-10-04T05:26:59.223702+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: libX11</p>
<p>Core X11 protocol client library.

Security Fix(es):

LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.(CVE-2021-31535)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1235"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0807-1</id>
    <title>openSUSE-SU-2021:0807-1 — Security update for libX11</title>
    <updated>2026-10-04T05:26:59.223726+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for libX11</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:0807-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2021:3472</id>
    <title>RHBA-2021:3472 — Red Hat Bug Fix Advisory: Red Hat Ansible Tower 3.8.4-1 - Container</title>
    <updated>2026-10-04T05:26:59.223742+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>nginx: Off-by-one in ngx_resolver_copy() when labels are followed by a pointer to a root domain name libX11: missing request length checks postgresql: Buffer overrun from integer overflow in array subscripting calculations postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2021:3472"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:14748-1</id>
    <title>SUSE-SU-2021:14748-1 — Security update for xorg-x11-libX11</title>
    <updated>2026-10-04T05:26:59.223762+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for xorg-x11-libX11</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:14748-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31535</id>
    <title>UBUNTU-CVE-2021-31535</title>
    <updated>2026-10-04T05:26:59.223775+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: libx11, Ubuntu:Pro:16.04:LTS: libx11, Ubuntu:18.04:LTS: libx11, Ubuntu:20.04:LTS: libx11</p>
<p>LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31535"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063</id>
    <title>WID-SEC-W-2023-0063 — Juniper Junos Space: Mehrere Schwachstellen</title>
    <updated>2026-10-04T05:26:59.223800+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer aus dem angrenzenden Netzwerk oder ein entfernter anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Juniper Junos Space ausnutzen, um Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, beliebigen Code auszuführen und seine Privilegien zu erweitern.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063"/>
  </entry>
</feed>
