<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T09:03:08.702252+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-06664</id>
    <title>bdu:2022-06664</title>
    <updated>2026-10-03T09:03:08.896113+00:00</updated>
    <content>bdu:2022-06664</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-06664"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-237109</id>
    <title>EUVD-2026-237109</title>
    <updated>2026-10-03T09:03:08.896153+00:00</updated>
    <content>EUVD-2026-237109</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-237109"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-43995</id>
    <title>fkie_cve-2022-43995</title>
    <updated>2026-10-03T09:03:08.896168+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-bounds error that can result in a heap-based buffer over-read. This can be triggered by arbitrary local users with access to Sudo by entering a password of seven characters or fewer. The impact could vary depending on the system libraries, compiler, and processor architecture.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-43995"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-3r97-xp9v-83jf</id>
    <title>GHSA-3r97-xp9v-83jf</title>
    <updated>2026-10-03T09:03:08.896197+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-bounds error that can result in a heap-based buffer over-read. This can be triggered by arbitrary local users with access to Sudo by entering a password of seven characters or fewer. The impact could vary depending on the compiler and processor architecture.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-3r97-xp9v-83jf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-43995</id>
    <title>gsd-2022-43995</title>
    <updated>2026-10-03T09:03:08.896213+00:00</updated>
    <content>gsd-2022-43995</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-43995"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-43995</id>
    <title>msrc_CVE-2022-43995 — Sudo 1.8.0 through 1.9.12 with the crypt() password backend contains a plugins/sudoers/auth/passwd.c array-out-of-bound…</title>
    <updated>2026-10-03T09:03:08.896224+00:00</updated>
    <content>msrc_CVE-2022-43995</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-43995"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2022-2079</id>
    <title>OESA-2022-2079 — sudo security update</title>
    <updated>2026-10-03T09:03:08.896242+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: sudo, openEuler:20.03-LTS-SP3: sudo, openEuler:22.03-LTS: sudo</p>
<p>Sudo is a program designed to allow a sysadmin to give limited root privileges to users and log root activity.  The basic philosophy is to give as few privileges as possible but still allow people to get their work done.

Security Fix(es):

Sudo 1.8.0 through 1.9.12, with the crypt() password backend, contains a plugins/sudoers/auth/passwd.c array-out-of-bounds error that can result in a heap-based buffer over-read. This can be triggered by arbitrary local users with access to Sudo by entering a password of seven characters or fewer. The impact could vary depending on the system libraries, compiler, and processor architecture.(CVE-2022-43995)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2022-2079"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12483-1</id>
    <title>openSUSE-SU-2024:12483-1 — sudo-1.9.12-3.1 on GA media</title>
    <updated>2026-10-03T09:03:08.896271+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>sudo-1.9.12-3.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:12483-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2022:3886-1</id>
    <title>SUSE-SU-2022:3886-1 — Security update for sudo</title>
    <updated>2026-10-03T09:03:08.896287+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for sudo</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2022:3886-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2023-001</id>
    <title>VDE-2023-001 — PHOENIX CONTACT: Multiple Vulnerabilities in PLCnext Firmware</title>
    <updated>2026-10-03T09:03:08.896301+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A new LTS Firmware release fixes known vulnerabilities in used open-source libraries.
In addition, the following improvements have been implemented:
HMI
- Hardening against DoS attacks. - Hardening against memory leak problems in case of network attacks.
WBM
- Umlauts in the password of the 'User Manager' were not handled correctly. The password rule for upper and lower case was not followed. This could lead to unintentionally weaker passwords.- Hardening of WBM against Cross-Site-Scripting.
User Manager
- In security notifications 'SecurityToken' was always displayed as '0000000' when creating or modifying users.- Hardening of Trust and Identity Stores.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2023-001"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1956</id>
    <title>WID-SEC-W-2022-1956 — sudo: Schwachstelle ermöglicht nicht spezifizierten Angriff</title>
    <updated>2026-10-03T09:03:08.896339+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in sudo ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1956"/>
  </entry>
</feed>
