<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T03:30:39.179228+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-00684</id>
    <title>bdu:2022-00684</title>
    <updated>2026-10-03T03:30:39.313882+00:00</updated>
    <content>bdu:2022-00684</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-00684"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-096</id>
    <title>certfr-2022-avi-096 — De multiples vulnérabilités ont été découvertes dans Samba. Certaines
d'entre elles permettent à un attaquant de provoq…</title>
    <updated>2026-10-03T03:30:39.313917+00:00</updated>
    <content>certfr-2022-avi-096</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-096"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-10863</id>
    <title>EUVD-2026-10863</title>
    <updated>2026-10-03T03:30:39.313935+00:00</updated>
    <content>EUVD-2026-10863</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-10863"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-0336</id>
    <title>fkie_cve-2022-0336</title>
    <updated>2026-10-03T03:30:39.313947+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that was previously present on that account, such as one added when a computer is joined to a domain. An attacker who has the ability to write to an account can exploit this to perform a denial-of-service attack by adding an SPN that matches an existing service. Additionally, an attacker who can intercept traffic can impersonate existing services, resulting in a loss of confidentiality and integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-0336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rg44-hwh5-vcpq</id>
    <title>GHSA-rg44-hwh5-vcpq</title>
    <updated>2026-10-03T03:30:39.313976+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that was previously present on that account, such as one added when a computer is joined to a domain. An attacker who has the ability to write to an account can exploit this to perform a denial-of-service attack by adding an SPN that matches an existing service. Additionally, an attacker who can intercept traffic can impersonate existing services, resulting in a loss of confidentiality and integrity.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rg44-hwh5-vcpq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-0336</id>
    <title>gsd-2022-0336</title>
    <updated>2026-10-03T03:30:39.313994+00:00</updated>
    <content>gsd-2022-0336</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-0336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-0336</id>
    <title>msrc_CVE-2022-0336 — The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not al…</title>
    <updated>2026-10-03T03:30:39.314004+00:00</updated>
    <content>msrc_CVE-2022-0336</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-0336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-1529</id>
    <title>OESA-2022-1529 — samba security update</title>
    <updated>2026-10-03T03:30:39.314022+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: samba, openEuler:20.03-LTS-SP2: samba, openEuler:20.03-LTS-SP3: samba</p>
<p>Samba is a suite of programs for Linux and Unix to interoperate with Windows.

Security Fix(es):

Checks in Samba AD DC to prevent alias SPNs may be bypassed, enabling users who can write to the account's servicePrincipalName attribute to impersonate the service.(CVE-2022-0336)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-1529"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0336</id>
    <title>UBUNTU-CVE-2022-0336</title>
    <updated>2026-10-03T03:30:39.314048+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: samba</p>
<p>The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that was previously present on that account, such as one added when a computer is joined to a domain. An attacker who has the ability to write to an account can exploit this to perform a denial-of-service attack by adding an SPN that matches an existing service. Additionally, an attacker who can intercept traffic can impersonate existing services, resulting in a loss of confidentiality and integrity.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-0336"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0302</id>
    <title>WID-SEC-W-2022-0302 — Xerox FreeFlow Print Server: Mehrere Schwachstellen ermöglichen Ausführen von beliebigem Programmcode mit Administrator…</title>
    <updated>2026-10-03T03:30:39.314068+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um beliebigen Programmcode auszuführen, einen Cross-Site-Scripting-Angriff durchzuführen, Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen oder Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0302"/>
  </entry>
</feed>
