<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T10:01:32.863994+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-03956</id>
    <title>bdu:2025-03956</title>
    <updated>2026-10-03T10:01:33.198086+00:00</updated>
    <content>bdu:2025-03956</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-03956"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0693</id>
    <title>certfr-2024-avi-0693 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T10:01:33.198132+00:00</updated>
    <content>certfr-2024-avi-0693</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0693"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/essa-2024:0627</id>
    <title>ESSA-2024:0627 — Important: linux-firmware security update for 7.0</title>
    <updated>2026-10-03T10:01:33.198152+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Important: linux-firmware security update for 7.0</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/essa-2024:0627"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-162729</id>
    <title>EUVD-2026-162729</title>
    <updated>2026-10-03T10:01:33.198180+00:00</updated>
    <content>EUVD-2026-162729</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-162729"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-31315</id>
    <title>fkie_cve-2023-31315</title>
    <updated>2026-10-03T10:01:33.198193+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-31315"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-7r5c-r5ww-995h</id>
    <title>GHSA-7r5c-r5ww-995h</title>
    <updated>2026-10-03T10:01:33.198215+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-7r5c-r5ww-995h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-31315</id>
    <title>gsd-2023-31315</title>
    <updated>2026-10-03T10:01:33.198229+00:00</updated>
    <content>gsd-2023-31315</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-31315"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-044-09</id>
    <title>ICSA-25-044-09 — Siemens SCALANCE W700 IEEE 802.11ax</title>
    <updated>2026-10-03T10:01:33.198239+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Zhenpeng Lin discovered that the network packet scheduler implementation in the Linux kernel did not properly remove all references to a route filter before freeing it in some situations. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. An issue was found in the Linux kernel in nf_conntrack_irc where the message handling can be confused and incorrectly matches the message. A firewall may be able to be bypassed when users are using unencrypted IRC with nf_conntrack_irc configured. A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the function ipv6_renew_options of the component IPv6 Handler. The manipulation leads to memory leak. The attack can be launched remotely. It is recommended to apply a patch to fix this issue. The identifier VDB-211021 was assigned to this vulnerability. A timing based side channel exists in the OpenSSL RSA Decryption implementation which could be sufficient to recover a plaintext across a network in a Bleichenbacher style attack. To achieve a successful decryption an attacker would have to be able to send a very large number of trial messages for decryption. The vulnerability affects all RSA padding modes: PKCS#1 v1.5, RSA-OEAP and RSASVE. For example, in a TLS connection, RSA is commonly used by a client to send an encrypted pre-master secret to the server. An attacker that had observed a genuine connection between a client and a se…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-044-09"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2104</id>
    <title>OESA-2024-2104 — linux-firmware security update</title>
    <updated>2026-10-03T10:01:33.198508+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: linux-firmware, openEuler:20.03-LTS-SP4: linux-firmware, openEuler:22.03-LTS-SP1: linux-firmware, openEuler:24.03-LTS: linux-firmware, openEuler:22.03-LTS-SP4: linux-firmware</p>
<p>This package contains firmware images required by some devices.</p>
<p>Security Fix(es):</p>
<p>Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.(CVE-2023-31315)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2104"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhba-2024:5645</id>
    <title>RHBA-2024:5645 — Red Hat Bug Fix Advisory: linux-firmware bug fix and enhancement update</title>
    <updated>2026-10-03T10:01:33.198542+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>hw: amd: SMM Lock Bypass</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhba-2024:5645"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:2911-1</id>
    <title>SUSE-SU-2024:2911-1 — Security update for kernel-firmware</title>
    <updated>2026-10-03T10:01:33.198558+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for kernel-firmware</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:2911-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-31315</id>
    <title>UBUNTU-CVE-2023-31315</title>
    <updated>2026-10-03T10:01:33.198572+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: amd64-microcode, Ubuntu:Pro:16.04:LTS: amd64-microcode, Ubuntu:Pro:18.04:LTS: amd64-microcode, Ubuntu:20.04:LTS: amd64-microcode, Ubuntu:22.04:LTS: amd64-microcode, Ubuntu:24.04:LTS: amd64-microcode</p>
<p>Improper validation in a model specific register (MSR) could allow a malicious program with ring0 access to modify SMM configuration while SMI lock is enabled, potentially leading to arbitrary code execution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-31315"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1807</id>
    <title>WID-SEC-W-2024-1807 — AMD Prozessor: Schwachstelle ermöglicht Codeausführung im System Management Mode (SMM)</title>
    <updated>2026-10-03T10:01:33.198597+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in AMD Prozessor, Dell PowerEdge und HPE ProLiant ausnutzen, um beliebigen Programmcode auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1807"/>
  </entry>
</feed>
