<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:31:19.534575+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-06338</id>
    <title>bdu:2024-06338</title>
    <updated>2026-10-03T00:31:19.686971+00:00</updated>
    <content>bdu:2024-06338</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-06338"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0420</id>
    <title>certfr-2024-avi-0420 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T00:31:19.687023+00:00</updated>
    <content>certfr-2024-avi-0420</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0420"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-310088</id>
    <title>EUVD-2026-310088</title>
    <updated>2026-10-03T00:31:19.687043+00:00</updated>
    <content>EUVD-2026-310088</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-310088"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-48675</id>
    <title>fkie_cve-2022-48675</title>
    <updated>2026-10-03T00:31:19.687056+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>IB/core: Fix a nested dead lock as part of ODP flow</p>
<p>Fix a nested dead lock as part of ODP flow by using mmput_async().</p>
<p>From the below call trace [1] can see that calling mmput() once we have
the umem_odp-&gt;umem_mutex locked as required by
ib_umem_odp_map_dma_and_lock() might trigger in the same task the
exit_mmap()-&gt;__mmu_notifier_release()-&gt;mlx5_ib_invalidate_range() which
may dead lock when trying to lock the same mutex.</p>
<p>Moving to use mmput_async() will solve the problem as the above
exit_mmap() flow will be called in other task and will be executed once
the lock will be available.</p>
<p>[1]
[64843.077665] task:kworker/u133:2  state:D stack:    0 pid:80906 ppid:
2 flags:0x00004000
[64843.077672] Workqueue: mlx5_ib_page_fault mlx5_ib_eqe_pf_action [mlx5_ib]
[64843.077719] Call Trace:
[64843.077722]  &lt;TASK&gt;
[64843.077724]  __schedule+0x23d/0x590
[64843.077729]  schedule+0x4e/0xb0
[64843.077735]  schedule_preempt_disabled+0xe/0x10
[64843.077740]  __mutex_lock.constprop.0+0x263/0x490
[64843.077747]  __mutex_lock_slowpath+0x13/0x20
[64843.077752]  mutex_lock+0x34/0x40
[64843.077758]  mlx5_ib_invalidate_range+0x48/0x270 [mlx5_ib]
[64843.077808]  __mmu_notifier_release+0x1a4/0x200
[64843.077816]  exit_mmap+0x1bc/0x200
[64843.077822]  ? walk_page_range+0x9c/0x120
[64843.077828]  ? __cond_resched+0x1a/0x50
[64843.077833]  ? mutex_lock+0x13/0x40
[64843.077839]  ? uprobe_clear_state+0xac/0x120
[64843.077860]  mmput+0x5…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-48675"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c34q-8xrw-g745</id>
    <title>GHSA-c34q-8xrw-g745</title>
    <updated>2026-10-03T00:31:19.687106+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>IB/core: Fix a nested dead lock as part of ODP flow</p>
<p>Fix a nested dead lock as part of ODP flow by using mmput_async().</p>
<p>From the below call trace [1] can see that calling mmput() once we have
the umem_odp-&gt;umem_mutex locked as required by
ib_umem_odp_map_dma_and_lock() might trigger in the same task the
exit_mmap()-&gt;__mmu_notifier_release()-&gt;mlx5_ib_invalidate_range() which
may dead lock when trying to lock the same mutex.</p>
<p>Moving to use mmput_async() will solve the problem as the above
exit_mmap() flow will be called in other task and will be executed once
the lock will be available.</p>
<p>[1]
[64843.077665] task:kworker/u133:2  state:D stack:    0 pid:80906 ppid:
2 flags:0x00004000
[64843.077672] Workqueue: mlx5_ib_page_fault mlx5_ib_eqe_pf_action [mlx5_ib]
[64843.077719] Call Trace:
[64843.077722]  &lt;TASK&gt;
[64843.077724]  __schedule+0x23d/0x590
[64843.077729]  schedule+0x4e/0xb0
[64843.077735]  schedule_preempt_disabled+0xe/0x10
[64843.077740]  __mutex_lock.constprop.0+0x263/0x490
[64843.077747]  __mutex_lock_slowpath+0x13/0x20
[64843.077752]  mutex_lock+0x34/0x40
[64843.077758]  mlx5_ib_invalidate_range+0x48/0x270 [mlx5_ib]
[64843.077808]  __mmu_notifier_release+0x1a4/0x200
[64843.077816]  exit_mmap+0x1bc/0x200
[64843.077822]  ? walk_page_range+0x9c/0x120
[64843.077828]  ? __cond_resched+0x1a/0x50
[64843.077833]  ? mutex_lock+0x13/0x40
[64843.077839]  ? uprobe_clear_state+0xac/0x120
[64843.077860]  mmput+0x5…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c34q-8xrw-g745"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-48675</id>
    <title>gsd-2022-48675</title>
    <updated>2026-10-03T00:31:19.687141+00:00</updated>
    <content>gsd-2022-48675</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-48675"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2080</id>
    <title>OESA-2024-2080 — kernel security update</title>
    <updated>2026-10-03T00:31:19.687153+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):

In the Linux kernel, the following vulnerability has been resolved:

io_uring: fix memleak in io_init_wq_offload()

I got memory leak report when doing fuzz test:

BUG: memory leak
unreferenced object 0xffff888107310a80 (size 96):
comm &amp;quot;syz-executor.6&amp;quot;, pid 4610, jiffies 4295140240 (age 20.135s)
hex dump (first 32 bytes):
01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 ad 4e ad de ff ff ff ff 00 00 00 00 .....N..........
backtrace:
[&amp;lt;000000001974933b&amp;gt;] kmalloc include/linux/slab.h:591 [inline]
[&amp;lt;000000001974933b&amp;gt;] kzalloc include/linux/slab.h:721 [inline]
[&amp;lt;000000001974933b&amp;gt;] io_init_wq_offload fs/io_uring.c:7920 [inline]
[&amp;lt;000000001974933b&amp;gt;] io_uring_alloc_task_context+0x466/0x640 fs/io_uring.c:7955
[&amp;lt;0000000039d0800d&amp;gt;] __io_uring_add_tctx_node+0x256/0x360 fs/io_uring.c:9016
[&amp;lt;000000008482e78c&amp;gt;] io_uring_add_tctx_node fs/io_uring.c:9052 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __do_sys_io_uring_enter fs/io_uring.c:9354 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __se_sys_io_uring_enter fs/io_uring.c:9301 [inline]
[&amp;lt;000000008482e78c&amp;gt;] __x64_sys_io_uring_enter+0xabc/0xc20 fs/io_uring.c:9301
[&amp;lt;00000000b875f18f&amp;gt;] do_syscall_x64 arch/x86/entry/common.c:50 [inline]
[&amp;lt;00000000b875f18f&amp;gt;] do_syscall_64+0x3b/0x90 arch/x86/entry/common.c:80
[&amp;lt;000000006b0a8484&amp;gt;] entry_SYSCALL_64_after_hwframe+0x44/0xae

CPU0…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2080"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:1644-1</id>
    <title>SUSE-SU-2024:1644-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T00:31:19.687394+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:1644-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48675</id>
    <title>UBUNTU-CVE-2022-48675</title>
    <updated>2026-10-03T00:31:19.687518+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 81 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: IB/core: Fix a nested dead lock as part of ODP flow Fix a nested dead lock as part of ODP flow by using mmput_async(). From the below call trace [1] can see that calling mmput() once we have the umem_odp-&gt;umem_mutex locked as required by ib_umem_odp_map_dma_and_lock() might trigger in the same task the exit_mmap()-&gt;__mmu_notifier_release()-&gt;mlx5_ib_invalidate_range() which may dead lock when trying to lock the same mutex. Moving to use mmput_async() will solve the problem as the above exit_mmap() flow will be called in other task and will be executed once the lock will be available. [1] [64843.077665] task:kworker/u133:2  state:D stack:    0 pid:80906 ppid: 2 flags:0x00004000 [64843.077672] Workqueue: mlx5_ib_page_fault mlx5_ib_eqe_pf_action [mlx5_ib] [64843.077719] Call Trace: [64843.077722]  &lt;TASK&gt; [64843.077724]  __schedule+0x23d/0x590 [64843.077729]  schedule+0x4e/0xb0 [64843.077735]  schedule_preempt_disabled+0xe/0x10 [64843.077740]  __mutex_lock.constprop.0+0x263/0x490 [64843.077747]  __mutex_lock_slowpath+0x13/0x20 [64843.077752]  mutex_lock+0x34/0x40 [64843.077758]  mlx5_ib_invalidate_range+0x48/0x270 [mlx5_ib] [64843.077808]  __mmu_notifier_release+0x1a4/0x200 [64843.077816]  exit_mmap+0x1bc/0x200 [64843.077822]  ? walk_page_range+0x9c/0x120 [64843.077828]  ? __cond_resched+0x1a/0x50 [64843.077833]  ? mutex_lock+0x13/0x40 [64843.077839]  ? uprobe_clear_state+0xac/0x120 [64843.077860]  mmput+0x5f/0x1…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48675"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1025</id>
    <title>WID-SEC-W-2024-1025 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T00:31:19.687671+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder um einen nicht spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1025"/>
  </entry>
</feed>
