<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:34:53.171089+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-21002</id>
    <title>EUVD-2026-21002</title>
    <updated>2026-10-03T21:34:53.177054+00:00</updated>
    <content>EUVD-2026-21002</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-21002"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3746</id>
    <title>fkie_cve-2021-3746</title>
    <updated>2026-10-03T21:34:53.177085+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is triggered by specially-crafted TPM2 command packets that then trigger the issue when the state of the TPM2's volatile state is written. The highest threat from this vulnerability is to system availability. This issue affects libtpms versions before 0.8.5, before 0.7.9 and before 0.6.6.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-3746"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-9ffq-6fp7-34mv</id>
    <title>GHSA-9ffq-6fp7-34mv</title>
    <updated>2026-10-03T21:34:53.177117+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is triggered by specially-crafted TPM2 command packets that then trigger the issue when the state of the TPM2's volatile state is written. The highest threat from this vulnerability is to system availability. This issue affects libtpms versions before 0.8.5, before 0.7.9 and before 0.6.6.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-9ffq-6fp7-34mv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-3746</id>
    <title>gsd-2021-3746</title>
    <updated>2026-10-03T21:34:53.177135+00:00</updated>
    <content>gsd-2021-3746</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-3746"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-1695</id>
    <title>OESA-2022-1695 — libtpms security update</title>
    <updated>2026-10-03T21:34:53.177146+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: libtpms, openEuler:20.03-LTS-SP3: libtpms, openEuler:22.03-LTS: libtpms</p>
<p>A library providing TPM functionality for VMs. Targeted for integration into Qemu.

Security Fix(es):

A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is triggered by specially-crafted TPM2 command packets that then trigger the issue when the state of the TPM2&amp;apos;s volatile state is written. The highest threat from this vulnerability is to system availability. This issue affects libtpms versions before 0.8.5, before 0.7.9 and before 0.6.6.(CVE-2021-3746)

A flaw was found in libtpms. The flaw can be triggered by specially-crafted TPM 2 command packets containing illegal values and may lead to an out-of-bounds access when the volatile state of the TPM 2 is marshalled/written or unmarshalled/read. The highest threat from this vulnerability is to system availability.(CVE-2021-3623)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-1695"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2021:3004-1</id>
    <title>openSUSE-SU-2021:3004-1 — Security update for libtpms</title>
    <updated>2026-10-03T21:34:53.177177+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for libtpms</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2021:3004-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2021:3004-1</id>
    <title>SUSE-SU-2021:3004-1 — Security update for libtpms</title>
    <updated>2026-10-03T21:34:53.177194+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for libtpms</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2021:3004-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3746</id>
    <title>Withdrawn: UBUNTU-CVE-2021-3746</title>
    <updated>2026-10-03T21:34:53.177207+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> Ubuntu:22.04:LTS: libtpms</p>
<p>A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is triggered by specially-crafted TPM2 command packets that then trigger the issue when the state of the TPM2's volatile state is written. The highest threat from this vulnerability is to system availability. This issue affects libtpms versions before 0.8.5, before 0.7.9 and before 0.6.6.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3746"/>
  </entry>
</feed>
