<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-08T22:16:45.272101+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-07405</id>
    <title>bdu:2025-07405</title>
    <updated>2026-10-08T22:16:45.356101+00:00</updated>
    <content>bdu:2025-07405</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-07405"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-1057</id>
    <title>certfr-2025-avi-1057 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-08T22:16:45.356150+00:00</updated>
    <content>certfr-2025-avi-1057</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-1057"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-309687</id>
    <title>EUVD-2026-309687</title>
    <updated>2026-10-08T22:16:45.356170+00:00</updated>
    <content>EUVD-2026-309687</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-309687"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2021-47349</id>
    <title>fkie_cve-2021-47349</title>
    <updated>2026-10-08T22:16:45.356182+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>mwifiex: bring down link before deleting interface</p>
<p>We can deadlock when rmmod'ing the driver or going through firmware
reset, because the cfg80211_unregister_wdev() has to bring down the link
for us, ... which then grab the same wiphy lock.</p>
<p>nl80211_del_interface() already handles a very similar case, with a nice
description:</p>
<p>/*
         * We hold RTNL, so this is safe, without RTNL opencount cannot
         * reach 0, and thus the rdev cannot be deleted.
         *
         * We need to do it for the dev_close(), since that will call
         * the netdev notifiers, and we need to acquire the mutex there
         * but don't know if we get there from here or from some other
         * place (e.g. "ip link set ... down").
         */
        mutex_unlock(&amp;rdev-&gt;wiphy.mtx);
...</p>
<p>Do similarly for mwifiex teardown, by ensuring we bring the link down
first.</p>
<p>Sample deadlock trace:</p>
<p>[  247.103516] INFO: task rmmod:2119 blocked for more than 123 seconds.
[  247.110630]       Not tainted 5.12.4 #5
[  247.115796] "echo 0 &gt; /proc/sys/kernel/hung_task_timeout_secs" disables this message.
[  247.124557] task:rmmod           state:D stack:    0 pid: 2119 ppid:  2114 flags:0x00400208
[  247.133905] Call trace:
[  247.136644]  __switch_to+0x130/0x170
[  247.140643]  __schedule+0x714/0xa0c
[  247.144548]  schedule_preempt_disabled+0x88/0xf4
[  247.149714]  __mutex_lock_common+0x43c/0x750
[  247.154496]  mutex_lo…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2021-47349"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-x5fc-mwch-j73r</id>
    <title>GHSA-x5fc-mwch-j73r</title>
    <updated>2026-10-08T22:16:45.356244+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>mwifiex: bring down link before deleting interface</p>
<p>We can deadlock when rmmod'ing the driver or going through firmware
reset, because the cfg80211_unregister_wdev() has to bring down the link
for us, ... which then grab the same wiphy lock.</p>
<p>nl80211_del_interface() already handles a very similar case, with a nice
description:</p>
<p>/*
         * We hold RTNL, so this is safe, without RTNL opencount cannot
         * reach 0, and thus the rdev cannot be deleted.
         *
         * We need to do it for the dev_close(), since that will call
         * the netdev notifiers, and we need to acquire the mutex there
         * but don't know if we get there from here or from some other
         * place (e.g. "ip link set ... down").
         */
        mutex_unlock(&amp;rdev-&gt;wiphy.mtx);
...</p>
<p>Do similarly for mwifiex teardown, by ensuring we bring the link down
first.</p>
<p>Sample deadlock trace:</p>
<p>[  247.103516] INFO: task rmmod:2119 blocked for more than 123 seconds.
[  247.110630]       Not tainted 5.12.4 #5
[  247.115796] "echo 0 &gt; /proc/sys/kernel/hung_task_timeout_secs" disables this message.
[  247.124557] task:rmmod           state:D stack:    0 pid: 2119 ppid:  2114 flags:0x00400208
[  247.133905] Call trace:
[  247.136644]  __switch_to+0x130/0x170
[  247.140643]  __schedule+0x714/0xa0c
[  247.144548]  schedule_preempt_disabled+0x88/0xf4
[  247.149714]  __mutex_lock_common+0x43c/0x750
[  247.154496]  mutex_lo…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-x5fc-mwch-j73r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47349</id>
    <title>UBUNTU-CVE-2021-47349</title>
    <updated>2026-10-08T22:16:45.356283+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 54 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: mwifiex: bring down link before deleting interface We can deadlock when rmmod'ing the driver or going through firmware reset, because the cfg80211_unregister_wdev() has to bring down the link for us, ... which then grab the same wiphy lock. nl80211_del_interface() already handles a very similar case, with a nice description:         /*          * We hold RTNL, so this is safe, without RTNL opencount cannot          * reach 0, and thus the rdev cannot be deleted.          *          * We need to do it for the dev_close(), since that will call          * the netdev notifiers, and we need to acquire the mutex there          * but don't know if we get there from here or from some other          * place (e.g. "ip link set ... down").          */         mutex_unlock(&amp;rdev-&gt;wiphy.mtx); ... Do similarly for mwifiex teardown, by ensuring we bring the link down first. Sample deadlock trace: [  247.103516] INFO: task rmmod:2119 blocked for more than 123 seconds. [  247.110630]       Not tainted 5.12.4 #5 [  247.115796] "echo 0 &gt; /proc/sys/kernel/hung_task_timeout_secs" disables this message. [  247.124557] task:rmmod           state:D stack:    0 pid: 2119 ppid: 2114 flags:0x00400208 [  247.133905] Call trace: [  247.136644]  __switch_to+0x130/0x170 [  247.140643]  __schedule+0x714/0xa0c [  247.144548]  schedule_preempt_disabled+0x88/0xf4 [  247.149714]  __mutex_lock_common+0x43c/0x750 [  247.154496]  mutex_lock_neste…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47349"/>
  </entry>
</feed>
