<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:45:53.040322+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-03248</id>
    <title>bdu:2023-03248</title>
    <updated>2026-10-03T08:45:53.349993+00:00</updated>
    <content>bdu:2023-03248</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-03248"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-214628</id>
    <title>EUVD-2026-214628</title>
    <updated>2026-10-03T08:45:53.350036+00:00</updated>
    <content>EUVD-2026-214628</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-214628"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-26964</id>
    <title>fkie_cve-2023-26964</title>
    <updated>2026-10-03T08:45:53.350051+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STREAM frames. As a result, the memory and CPU usage are high which can lead to a Denial of Service (DoS).</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-26964"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-f8vr-r385-rh5r</id>
    <title>GHSA-f8vr-r385-rh5r — h2 vulnerable to denial of service</title>
    <updated>2026-10-03T08:45:53.350082+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: h2</p>
<p>Hyper is an HTTP library for Rust and h2 is an HTTP 2.0 client &amp; server implementation for Rust. An issue was discovered in h2 v0.2.4 when processing header frames. It incorrectly processes the HTTP2 `RST_STREAM` frames by not always releasing the memory immediately upon receiving the reset frame, leading to stream stacking. As a result, the memory and CPU usage are high which can lead to a Denial of Service (DoS).</p>
<p>This issue affects users only when dealing with http2 connections.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-f8vr-r385-rh5r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-26964</id>
    <title>gsd-2023-26964</title>
    <updated>2026-10-03T08:45:53.350112+00:00</updated>
    <content>gsd-2023-26964</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-26964"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2023-26964</id>
    <title>msrc_CVE-2023-26964 — An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STR…</title>
    <updated>2026-10-03T08:45:53.350124+00:00</updated>
    <content>msrc_CVE-2023-26964</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2023-26964"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:0294-1</id>
    <title>openSUSE-SU-2024:0294-1 — Security update for kanidm</title>
    <updated>2026-10-03T08:45:53.350142+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for kanidm</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:0294-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2023-0034</id>
    <title>RUSTSEC-2023-0034 — Resource exhaustion vulnerability in h2 may lead to Denial of Service (DoS)</title>
    <updated>2026-10-03T08:45:53.350160+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: h2</p>
<p>If an attacker is able to flood the network with pairs of `HEADERS`/`RST_STREAM` frames, such that the `h2` application is not able to accept them faster than the bytes are received, the pending accept queue can grow in memory usage. Being able to do this consistently can result in excessive memory use, and eventually trigger Out Of Memory.</p>
<p>This flaw is corrected in [hyperium/h2#668](https://github.com/hyperium/h2/pull/668), which restricts remote reset stream count by default.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2023-0034"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:02809-1</id>
    <title>SUSE-SU-2025:02809-1 — Security update for rust-keylime</title>
    <updated>2026-10-03T08:45:53.350182+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for rust-keylime</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:02809-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-26964</id>
    <title>UBUNTU-CVE-2023-26964</title>
    <updated>2026-10-03T08:45:53.350199+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: rust-hyper, Ubuntu:24.04:LTS: rust-hyper, Ubuntu:25.10: rust-hyper, Ubuntu:26.04:LTS: rust-hyper</p>
<p>An issue was discovered in hyper v0.13.7. h2-0.2.4 Stream stacking occurs when the H2 component processes HTTP2 RST_STREAM frames. As a result, the memory and CPU usage are high which can lead to a Denial of Service (DoS).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-26964"/>
  </entry>
</feed>
