<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T22:39:03.841488+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2023:0103</id>
    <title>ALSA-2023:0103 — Moderate: expat security update</title>
    <updated>2026-10-02T22:39:04.440652+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: expat, AlmaLinux:8: expat-devel</p>
<p>Expat is a C library for parsing XML documents.</p>
<p>Security Fix(es):</p>
<p>* expat: use-after free caused by overeager destruction of a shared DTD in
XML_ExternalEntityParserCreate (CVE-2022-43680)</p>
<p>For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2023:0103"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-02688</id>
    <title>bdu:2023-02688</title>
    <updated>2026-10-02T22:39:04.440740+00:00</updated>
    <content>bdu:2023-02688</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-02688"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2022-43680</id>
    <title>Withdrawn: BELL-CVE-2022-43680 — CVE-2022-43680 does not affect BellSoft software</title>
    <updated>2026-10-02T22:39:04.440759+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>
          <strong>Withdrawn by the publisher.</strong>
        </p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2022-43680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1019</id>
    <title>certfr-2022-avi-1019 — De multiples vulnérabilités ont été découvertes dans Nessus. Elles
permettent à un attaquant de provoquer un problème d…</title>
    <updated>2026-10-02T22:39:04.440776+00:00</updated>
    <content>certfr-2022-avi-1019</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2022-avi-1019"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-bo53666</id>
    <title>CLEANSTART-2026-BO53666 — Security fix for CVE-2022-43680 applied in: expat 2.5.0-r0</title>
    <updated>2026-10-02T22:39:04.440790+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> CleanStart: expat</p>
<p>Security vulnerability affects the expat package. This issue is resolved in later releases. See references for vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-bo53666"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-242231</id>
    <title>EUVD-2026-242231</title>
    <updated>2026-10-02T22:39:04.440811+00:00</updated>
    <content>EUVD-2026-242231</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-242231"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-43680</id>
    <title>fkie_cve-2022-43680</title>
    <updated>2026-10-02T22:39:04.440823+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-43680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-4hjv-8mmr-jxwv</id>
    <title>GHSA-4hjv-8mmr-jxwv</title>
    <updated>2026-10-02T22:39:04.440844+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-4hjv-8mmr-jxwv"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-43680</id>
    <title>gsd-2022-43680</title>
    <updated>2026-10-02T22:39:04.440858+00:00</updated>
    <content>gsd-2022-43680</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-43680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-23-131-05</id>
    <title>ICSA-23-131-05 — Siemens SINEC NMS Third-Party</title>
    <updated>2026-10-02T22:39:04.440870+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request which used that callback. This flaw may surprise the application and cause it to misbehave and either send off the wrong data or use memory after free or similar in the subsequent `POST` request. The problem exists in the logic for a reused handle when it is changed from a PUT to a POST. When curl is used to retrieve and parse cookies from a HTTP(S) server, itaccepts cookies using control codes that when later are sent back to a HTTPserver might make the server return 400 responses. Effectively allowing a"sister site" to deny service to all siblings. curl can be told to parse a `.netrc` file for credentials. If that file endsin a line with 4095 consecutive non-white space letters and no newline, curlwould first read past the end of the stack-based buffer, and if the readworks, write a zero byte beyond its boundary.This will in most cases cause a segfault or similar, but circumstances might also cause different outcomes.If a malicious user can provide a custom netrc file to an application or otherwise affect its contents, this flaw could be used as denial-of-service. libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c. curl before 7.86.0 has a double free. If curl is told to use an HTTP proxy for a tra…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-23-131-05"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-43680</id>
    <title>msrc_CVE-2022-43680 — In libexpat through 2.4.9 there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEnti…</title>
    <updated>2026-10-02T22:39:04.440917+00:00</updated>
    <content>msrc_CVE-2022-43680</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-43680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-2037</id>
    <title>OESA-2022-2037 — expat security update</title>
    <updated>2026-10-02T22:39:04.440935+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: expat, openEuler:20.03-LTS-SP3: expat, openEuler:22.03-LTS: expat</p>
<p>expat is a stream-oriented XML parser library written in C. expat excels with files too large to fit RAM, and where performance and flexibility are crucial.


Security Fix(es):

In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.(CVE-2022-43680)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-2037"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12449-1</id>
    <title>openSUSE-SU-2024:12449-1 — expat-2.5.0-1.1 on GA media</title>
    <updated>2026-10-02T22:39:04.440961+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>expat-2.5.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:12449-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2022:8548</id>
    <title>RHSA-2022:8548 — Red Hat Security Advisory: firefox security update</title>
    <updated>2026-10-02T22:39:04.440978+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>expat: use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate Mozilla: Service Workers might have learned size of cross-origin media files Mozilla: Fullscreen notification bypass Mozilla: Use-after-free in InputStream implementation Mozilla: Use-after-free of a JavaScript Realm Mozilla: Fullscreen notification bypass via windowName Mozilla: Use-after-free in Garbage Collection Mozilla: ServiceWorker-intercepted requests bypassed SameSite cookie policy Mozilla: Cross-Site Tracing was possible via non-standard override headers Mozilla: Symlinks may resolve to partially uninitialized buffers Mozilla: Keystroke Side-Channel Leakage Mozilla: Custom mouse cursor could have been drawn over browser UI Mozilla: Iframe contents could be rendered outside the iframe Mozilla: Memory safety bugs fixed in Firefox 107 and Firefox ESR 102.5</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2022:8548"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:3874-1</id>
    <title>SUSE-SU-2022:3874-1 — Security update for expat</title>
    <updated>2026-10-02T22:39:04.441018+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for expat</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:3874-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-43680</id>
    <title>UBUNTU-CVE-2022-43680</title>
    <updated>2026-10-02T22:39:04.441034+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: expat, Ubuntu:Pro:14.04:LTS: coin3, Ubuntu:Pro:14.04:LTS: vnc4, Ubuntu:Pro:14.04:LTS: vtk, Ubuntu:Pro:14.04:LTS: xmlrpc-c, Ubuntu:Pro:16.04:LTS: expat, Ubuntu:Pro:16.04:LTS: ayttm, Ubuntu:Pro:16.04:LTS: cableswig, Ubuntu:16.04:LTS: cadaver, Ubuntu:Pro:16.04:LTS: coin3 and 54 more</p>
<p>In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-43680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2022-058</id>
    <title>VDE-2022-058 — PHOENIX CONTACT: Profinet SDK libexpat vulnerabilities</title>
    <updated>2026-10-02T22:39:04.441123+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Two vulnerabilities have been discovered in the Expat XML parser library (aka libexpat). This open-source component is widely used in a lot of products worldwide. An attacker could cause a program to crash, use unexpected values or execute code by exploiting these use-after-free vulnerabilities.
Profinet SDK is using XML parser library Expat as reference solution for loading the XML based Profinet network configuration files (IPPNIO or TIC).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2022-058"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1844</id>
    <title>WID-SEC-W-2022-1844 — expat: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-02T22:39:04.441143+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in expat ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1844"/>
  </entry>
</feed>
