<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:57:07.050180+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-04572</id>
    <title>bdu:2024-04572</title>
    <updated>2026-10-02T14:57:07.508009+00:00</updated>
    <content>bdu:2024-04572</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-04572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0420</id>
    <title>certfr-2024-avi-0420 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-02T14:57:07.508064+00:00</updated>
    <content>certfr-2024-avi-0420</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0420"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-310087</id>
    <title>EUVD-2026-310087</title>
    <updated>2026-10-02T14:57:07.508084+00:00</updated>
    <content>EUVD-2026-310087</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-310087"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-48672</id>
    <title>fkie_cve-2022-48672</title>
    <updated>2026-10-02T14:57:07.508096+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>of: fdt: fix off-by-one error in unflatten_dt_nodes()</p>
<p>Commit 78c44d910d3e ("drivers/of: Fix depth when unflattening devicetree")
forgot to fix up the depth check in the loop body in unflatten_dt_nodes()
which makes it possible to overflow the nps[] buffer...</p>
<p>Found by Linux Verification Center (linuxtesting.org) with the SVACE static
analysis tool.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-48672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-294m-6544-vprq</id>
    <title>GHSA-294m-6544-vprq</title>
    <updated>2026-10-02T14:57:07.508131+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>of: fdt: fix off-by-one error in unflatten_dt_nodes()</p>
<p>Commit 78c44d910d3e ("drivers/of: Fix depth when unflattening devicetree")
forgot to fix up the depth check in the loop body in unflatten_dt_nodes()
which makes it possible to overflow the nps[] buffer...</p>
<p>Found by Linux Verification Center (linuxtesting.org) with the SVACE static
analysis tool.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-294m-6544-vprq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-48672</id>
    <title>gsd-2022-48672</title>
    <updated>2026-10-02T14:57:07.508151+00:00</updated>
    <content>gsd-2022-48672</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-48672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2080</id>
    <title>OESA-2024-2080 — kernel security update</title>
    <updated>2026-10-02T14:57:07.508162+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):

In the Linux kernel, the following vulnerability has been resolved:

io_uring: fix memleak in io_init_wq_offload()

I got memory leak report when doing fuzz test:

BUG: memory leak
unreferenced object 0xffff888107310a80 (size 96):
comm &amp;quot;syz-executor.6&amp;quot;, pid 4610, jiffies 4295140240 (age 20.135s)
hex dump (first 32 bytes):
01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 ad 4e ad de ff ff ff ff 00 00 00 00 .....N..........
backtrace:
[&amp;lt;000000001974933b&amp;gt;] kmalloc include/linux/slab.h:591 [inline]
[&amp;lt;000000001974933b&amp;gt;] kzalloc include/linux/slab.h:721 [inline]
[&amp;lt;000000001974933b&amp;gt;] io_init_wq_offload fs/io_uring.c:7920 [inline]
[&amp;lt;000000001974933b&amp;gt;] io_uring_alloc_task_context+0x466/0x640 fs/io_uring.c:7955
[&amp;lt;0000000039d0800d&amp;gt;] __io_uring_add_tctx_node+0x256/0x360 fs/io_uring.c:9016
[&amp;lt;000000008482e78c&amp;gt;] io_uring_add_tctx_node fs/io_uring.c:9052 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __do_sys_io_uring_enter fs/io_uring.c:9354 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __se_sys_io_uring_enter fs/io_uring.c:9301 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __x64_sys_io_uring_enter+0xabc/0xc20 fs/io_uring.c:9301
[&amp;lt;00000000b875f18f&amp;gt;] do_syscall_x64 arch/x86/entry/common.c:50 [inline]
[&amp;lt;00000000b875f18f&amp;gt;] do_syscall_64+0x3b/0x90 arch/x86/entry/common.c:80
[&amp;lt;000000006b0a8484&amp;gt;] entry_SYSCALL_64_after_hwframe+0x44/0xae

CPU0…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2080"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:9315</id>
    <title>RHSA-2024:9315 — Red Hat Security Advisory: kernel security update</title>
    <updated>2026-10-02T14:57:07.508429+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: use after free in i2c kernel: bluetooth: BR/EDR Bluetooth Impersonation Attacks (BIAS) kernel: hwmon: (lm90) Prevent integer overflow/underflow in hysteresis calculations kernel: asix: fix uninit-value in asix_mdio_read() kernel: tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc kernel: hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field kernel: hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field kernel: powerpc/64s: fix program check interrupt emergency stack path kernel: powerpc/64s: Fix unrecoverable MCE calling async handler from NMI kernel: lib/generic-radix-tree.c: Don't overflow in peek() kernel: powerpc/smp: do not decrement idle task preempt count in CPU offline kernel: can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() kernel: usbnet: sanity check for maxpacket kernel: nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells kernel: aio: fix use-after-free due to missing POLLFREE handling kernel: powerpc/pseries: Fix potential memleak in papr_get_attr() kernel: of: fdt: fix off-by-one error in unflatten_dt_nodes() kernel: thermal/int340x_thermal: handle data_vault when the value is ZERO_SIZE_PTR kernel: vt_ioctl: fix array_index_nospec in vt_setactivate kernel: bpf: Fix crash due to out of bounds access into reg2btf_ids. kernel: lz4: fix LZ4_decompress_safe_partial read out of bound kernel: x86/mce: Work around an erratum on fast string copy instructions…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:9315"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:1642-1</id>
    <title>SUSE-SU-2024:1642-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-02T14:57:07.509460+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:1642-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48672</id>
    <title>UBUNTU-CVE-2022-48672</title>
    <updated>2026-10-02T14:57:07.509536+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux, Ubuntu:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.4 and 127 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: of: fdt: fix off-by-one error in unflatten_dt_nodes() Commit 78c44d910d3e ("drivers/of: Fix depth when unflattening devicetree") forgot to fix up the depth check in the loop body in unflatten_dt_nodes() which makes it possible to overflow the nps[] buffer... Found by Linux Verification Center (linuxtesting.org) with the SVACE static analysis tool.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48672"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1025</id>
    <title>WID-SEC-W-2024-1025 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-02T14:57:07.509923+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder um einen nicht spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1025"/>
  </entry>
</feed>
