<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T08:51:45.060407+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-33537</id>
    <title>EUVD-2026-33537</title>
    <updated>2026-10-04T08:51:45.407953+00:00</updated>
    <content>EUVD-2026-33537</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-33537"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-45710</id>
    <title>fkie_cve-2021-45710</title>
    <updated>2026-10-04T08:51:45.407999+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in the tokio crate before 1.8.4, and 1.9.x through 1.13.x before 1.13.1, for Rust. In certain circumstances involving a closed oneshot channel, there is a data race and memory corruption.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-45710"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fg7r-2g4j-5cgr</id>
    <title>GHSA-fg7r-2g4j-5cgr — Race Condition in tokio</title>
    <updated>2026-10-04T08:51:45.408037+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: tokio</p>
<p>If a tokio::sync::oneshot channel is closed (via the oneshot::Receiver::close method), a data race may occur if the oneshot::Sender::send method is called while the corresponding oneshot::Receiver is awaited or calling try_recv.</p>
<p>When these methods are called concurrently on a closed channel, the two halves of the channel can concurrently access a shared memory location, resulting in a data race. This has been observed to cause memory corruption.</p>
<p>Note that the race only occurs when both halves of the channel are used after the Receiver half has called close. Code where close is not used, or where the Receiver is not awaited and try_recv is not called after calling close, is not affected.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fg7r-2g4j-5cgr"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2021-45710</id>
    <title>gsd-2021-45710</title>
    <updated>2026-10-04T08:51:45.408069+00:00</updated>
    <content>gsd-2021-45710</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2021-45710"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:0294-1</id>
    <title>openSUSE-SU-2024:0294-1 — Security update for kanidm</title>
    <updated>2026-10-04T08:51:45.408083+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for kanidm</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:0294-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2021-0124</id>
    <title>RUSTSEC-2021-0124 — Data race when sending and receiving after closing a `oneshot` channel</title>
    <updated>2026-10-04T08:51:45.408103+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: tokio</p>
<p>If a `tokio::sync::oneshot` channel is closed (via the
[`oneshot::Receiver::close`] method), a data race may occur if the
`oneshot::Sender::send` method is called while the corresponding
`oneshot::Receiver` is `await`ed or calling `try_recv`.</p>
<p>When these methods are called concurrently on a closed channel, the two halves
of the channel can concurrently access a shared memory location, resulting in a
data race. This has been observed to [cause memory corruption][corruption].</p>
<p>Note that the race only occurs when **both** halves of the channel are used
after the `Receiver` half has called `close`. Code where `close` is not used, or where the
`Receiver` is not `await`ed and `try_recv` is not called after calling `close`,
is not affected.</p>
<p>See [tokio#4225][issue] for more details.</p>
<p>[corruption]: https://github.com/tokio-rs/tokio/issues/4225#issuecomment-967434847
[issue]: https://github.com/tokio-rs/tokio/issues/4225
[`oneshot::Receiver::close`]: https://docs.rs/tokio/1.14.0/tokio/sync/oneshot/struct.Receiver.html#method.close</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2021-0124"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:3949-1</id>
    <title>SUSE-SU-2022:3949-1 — Security update for rustup</title>
    <updated>2026-10-04T08:51:45.408132+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for rustup</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:3949-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-45710</id>
    <title>UBUNTU-CVE-2021-45710</title>
    <updated>2026-10-04T08:51:45.408149+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: rust-tokio, Ubuntu:22.04:LTS: rust-tokio, Ubuntu:24.04:LTS: rust-tokio, Ubuntu:25.10: rust-tokio, Ubuntu:26.04:LTS: rust-tokio</p>
<p>An issue was discovered in the tokio crate before 1.8.4, and 1.9.x through 1.13.x before 1.13.1, for Rust. In certain circumstances involving a closed oneshot channel, there is a data race and memory corruption.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-45710"/>
  </entry>
</feed>
