<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T22:23:11.435299+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2021:3061</id>
    <title>ALSA-2021:3061 — Moderate: virt:rhel and virt-devel:rhel security and bug fix update</title>
    <updated>2026-10-03T22:23:11.456096+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: libguestfs-winsupport, AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: libnbd, AlmaLinux:8: libnbd-devel, AlmaLinux:8: libvirt-dbus, AlmaLinux:8: nbdfuse, AlmaLinux:8: nbdkit, AlmaLinux:8: nbdkit-bash-completion and 25 more</p>
<p>Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.</p>
<p>Security Fix(es):</p>
<p>* QEMU: msix: OOB access during mmio operations may lead to DoS (CVE-2020-13754)</p>
<p>* hivex: Buffer overflow when provided invalid node key length (CVE-2021-3504)</p>
<p>* QEMU: net: an assert failure via eth_get_gso_type (CVE-2020-27617)</p>
<p>* QEMU: net: infinite loop in loopback mode may lead to stack overflow (CVE-2021-3416)</p>
<p>* qemu: out-of-bound heap buffer access via an interrupt ID field (CVE-2021-20221)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p>
<p>Bug Fix(es):</p>
<p>* cannot restart default network and firewalld: iptables: No chain/target/match by that name. (BZ#1958301)</p>
<p>* RHEL8.4 Nightly[0322] - KVM guest fails to find zipl boot menu index (qemu-kvm) (BZ#1975679)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2021:3061"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2021-04581</id>
    <title>bdu:2021-04581</title>
    <updated>2026-10-03T22:23:11.456201+00:00</updated>
    <content>bdu:2021-04581</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2021-04581"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0051</id>
    <title>certfr-2023-avi-0051 — De multiples vulnérabilités ont été découvertes dans les produits
Juniper. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-03T22:23:11.456219+00:00</updated>
    <content>certfr-2023-avi-0051</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-0051"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-20857</id>
    <title>EUVD-2026-20857</title>
    <updated>2026-10-03T22:23:11.456235+00:00</updated>
    <content>EUVD-2026-20857</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-20857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3504</id>
    <title>fkie_cve-2021-3504</title>
    <updated>2026-10-03T22:23:11.456246+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-3504"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-5vp3-c6x6-5464</id>
    <title>GHSA-5vp3-c6x6-5464</title>
    <updated>2026-10-03T22:23:11.456268+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-5vp3-c6x6-5464"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-3504</id>
    <title>gsd-2021-3504</title>
    <updated>2026-10-03T22:23:11.456294+00:00</updated>
    <content>gsd-2021-3504</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-3504"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3504</id>
    <title>msrc_CVE-2021-3504 — A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the…</title>
    <updated>2026-10-03T22:23:11.456306+00:00</updated>
    <content>msrc_CVE-2021-3504</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2021-3504"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2021-1200</id>
    <title>OESA-2021-1200 — hivex security update</title>
    <updated>2026-10-03T22:23:11.456322+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: hivex</p>
<p>Hivex is a library for extracting the contents of Windows Registry &amp;quot;hive&amp;quot; files.  It is designed to be secure against buggy or malicious registry files.

Security Fix(es):

A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.(CVE-2021-3504)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2021-1200"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0806-1</id>
    <title>openSUSE-SU-2021:0806-1 — Security update for hivex</title>
    <updated>2026-10-03T22:23:11.456346+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for hivex</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:0806-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2021:3061</id>
    <title>RHSA-2021:3061 — Red Hat Security Advisory: virt:rhel and virt-devel:rhel security and bug fix update</title>
    <updated>2026-10-03T22:23:11.456362+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>QEMU: msix: OOB access during mmio operations may lead to DoS QEMU: net: an assert failure via eth_get_gso_type QEMU: net: Infinite loop in loopback mode may lead to stack overflow hivex: Buffer overflow when provided invalid node key length qemu: out-of-bound heap buffer access via an interrupt ID field</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2021:3061"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:1760-1</id>
    <title>SUSE-SU-2021:1760-1 — Security update for hivex</title>
    <updated>2026-10-03T22:23:11.456382+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for hivex</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:1760-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3504</id>
    <title>UBUNTU-CVE-2021-3504</title>
    <updated>2026-10-03T22:23:11.456396+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: hivex, Ubuntu:Pro:16.04:LTS: hivex, Ubuntu:18.04:LTS: hivex, Ubuntu:20.04:LTS: hivex, Ubuntu:22.04:LTS: hivex, Ubuntu:24.04:LTS: hivex, Ubuntu:25.10: hivex, Ubuntu:26.04:LTS: hivex</p>
<p>A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3504"/>
  </entry>
</feed>
