<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T16:58:46.279651+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-01940</id>
    <title>bdu:2024-01940</title>
    <updated>2026-10-03T16:58:46.531199+00:00</updated>
    <content>bdu:2024-01940</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-01940"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2023-52572</id>
    <title>BELL-CVE-2023-52572</title>
    <updated>2026-10-03T16:58:46.531276+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2023-52572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0363</id>
    <title>certfr-2024-avi-0363 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;le noyau Linux de SUSE&lt;/span&gt;. Certaines d'en…</title>
    <updated>2026-10-03T16:58:46.531309+00:00</updated>
    <content>certfr-2024-avi-0363</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0363"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-345013</id>
    <title>EUVD-2026-345013</title>
    <updated>2026-10-03T16:58:46.531327+00:00</updated>
    <content>EUVD-2026-345013</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-345013"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-52572</id>
    <title>fkie_cve-2023-52572</title>
    <updated>2026-10-03T16:58:46.531339+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>cifs: Fix UAF in cifs_demultiplex_thread()</p>
<p>There is a UAF when xfstests on cifs:</p>
<p>BUG: KASAN: use-after-free in smb2_is_network_name_deleted+0x27/0x160
  Read of size 4 at addr ffff88810103fc08 by task cifsd/923</p>
<p>CPU: 1 PID: 923 Comm: cifsd Not tainted 6.1.0-rc4+ #45
  ...
  Call Trace:
   &lt;TASK&gt;
   dump_stack_lvl+0x34/0x44
   print_report+0x171/0x472
   kasan_report+0xad/0x130
   kasan_check_range+0x145/0x1a0
   smb2_is_network_name_deleted+0x27/0x160
   cifs_demultiplex_thread.cold+0x172/0x5a4
   kthread+0x165/0x1a0
   ret_from_fork+0x1f/0x30
   &lt;/TASK&gt;</p>
<p>Allocated by task 923:
   kasan_save_stack+0x1e/0x40
   kasan_set_track+0x21/0x30
   __kasan_slab_alloc+0x54/0x60
   kmem_cache_alloc+0x147/0x320
   mempool_alloc+0xe1/0x260
   cifs_small_buf_get+0x24/0x60
   allocate_buffers+0xa1/0x1c0
   cifs_demultiplex_thread+0x199/0x10d0
   kthread+0x165/0x1a0
   ret_from_fork+0x1f/0x30</p>
<p>Freed by task 921:
   kasan_save_stack+0x1e/0x40
   kasan_set_track+0x21/0x30
   kasan_save_free_info+0x2a/0x40
   ____kasan_slab_free+0x143/0x1b0
   kmem_cache_free+0xe3/0x4d0
   cifs_small_buf_release+0x29/0x90
   SMB2_negotiate+0x8b7/0x1c60
   smb2_negotiate+0x51/0x70
   cifs_negotiate_protocol+0xf0/0x160
   cifs_get_smb_ses+0x5fa/0x13c0
   mount_get_conns+0x7a/0x750
   cifs_mount+0x103/0xd00
   cifs_smb3_do_mount+0x1dd/0xcb0
   smb3_get_tree+0x1d5/0x300
   vfs_get_tree+0x41/0xf0
   path_mount+0x9b3/0xdd0
   __x64_sys_mou…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-52572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rj62-x3fp-f44h</id>
    <title>GHSA-rj62-x3fp-f44h</title>
    <updated>2026-10-03T16:58:46.531390+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>cifs: Fix UAF in cifs_demultiplex_thread()</p>
<p>There is a UAF when xfstests on cifs:</p>
<p>BUG: KASAN: use-after-free in smb2_is_network_name_deleted+0x27/0x160
  Read of size 4 at addr ffff88810103fc08 by task cifsd/923</p>
<p>CPU: 1 PID: 923 Comm: cifsd Not tainted 6.1.0-rc4+ #45
  ...
  Call Trace:
   &lt;TASK&gt;
   dump_stack_lvl+0x34/0x44
   print_report+0x171/0x472
   kasan_report+0xad/0x130
   kasan_check_range+0x145/0x1a0
   smb2_is_network_name_deleted+0x27/0x160
   cifs_demultiplex_thread.cold+0x172/0x5a4
   kthread+0x165/0x1a0
   ret_from_fork+0x1f/0x30
   &lt;/TASK&gt;</p>
<p>Allocated by task 923:
   kasan_save_stack+0x1e/0x40
   kasan_set_track+0x21/0x30
   __kasan_slab_alloc+0x54/0x60
   kmem_cache_alloc+0x147/0x320
   mempool_alloc+0xe1/0x260
   cifs_small_buf_get+0x24/0x60
   allocate_buffers+0xa1/0x1c0
   cifs_demultiplex_thread+0x199/0x10d0
   kthread+0x165/0x1a0
   ret_from_fork+0x1f/0x30</p>
<p>Freed by task 921:
   kasan_save_stack+0x1e/0x40
   kasan_set_track+0x21/0x30
   kasan_save_free_info+0x2a/0x40
   ____kasan_slab_free+0x143/0x1b0
   kmem_cache_free+0xe3/0x4d0
   cifs_small_buf_release+0x29/0x90
   SMB2_negotiate+0x8b7/0x1c60
   smb2_negotiate+0x51/0x70
   cifs_negotiate_protocol+0xf0/0x160
   cifs_get_smb_ses+0x5fa/0x13c0
   mount_get_conns+0x7a/0x750
   cifs_mount+0x103/0xd00
   cifs_smb3_do_mount+0x1dd/0xcb0
   smb3_get_tree+0x1d5/0x300
   vfs_get_tree+0x41/0xf0
   path_mount+0x9b3/0xdd0
   __x64_sys_mou…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rj62-x3fp-f44h"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-52572</id>
    <title>gsd-2023-52572</title>
    <updated>2026-10-03T16:58:46.531428+00:00</updated>
    <content>gsd-2023-52572</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-52572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2023-52572</id>
    <title>msrc_CVE-2023-52572 — cifs: Fix UAF in cifs_demultiplex_thread()</title>
    <updated>2026-10-03T16:58:46.531441+00:00</updated>
    <content>msrc_CVE-2023-52572</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2023-52572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1282</id>
    <title>OESA-2025-1282 — kernel security update</title>
    <updated>2026-10-03T16:58:46.531459+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP4: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ARM: davinci: da850-evm: Avoid NULL pointer dereference</p>
<p>With newer versions of GCC, there is a panic in da850_evm_config_emac()
when booting multi_v5_defconfig in QEMU under the palmetto-bmc machine:</p>
<p>Unable to handle kernel NULL pointer dereference at virtual address 00000020
pgd = (ptrval)
[00000020] *pgd=00000000
Internal error: Oops: 5 [#1] PREEMPT ARM
Modules linked in:
CPU: 0 PID: 1 Comm: swapper Not tainted 5.15.0 #1
Hardware name: Generic DT based system
PC is at da850_evm_config_emac+0x1c/0x120
LR is at do_one_initcall+0x50/0x1e0</p>
<p>The emac_pdata pointer in soc_info is NULL because davinci_soc_info only
gets populated on davinci machines but da850_evm_config_emac() is called
on all machines via device_initcall().</p>
<p>Move the rmii_en assignment below the machine check so that it is only
dereferenced when running on a supported SoC.(CVE-2021-47631)</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>video: fbdev: nvidiafb: Use strscpy() to prevent buffer overflow</p>
<p>Coverity complains of a possible buffer overflow. However,
given the &amp;apos;static&amp;apos; scope of nvidia_setup_i2c_bus() it looks
like that can&amp;apos;t happen after examiniing the call sites.</p>
<p>CID 19036 (#1 of 1): Copy into fixed size buffer (STRING_OVERFLOW)
1. fixed_size_dest: You might overrun the 48-character fixed-size string
  chan-&amp;gt;adapter.name…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1282"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:1454-1</id>
    <title>SUSE-SU-2024:1454-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T16:58:46.531609+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:1454-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-52572</id>
    <title>UBUNTU-CVE-2023-52572</title>
    <updated>2026-10-03T16:58:46.531700+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 158 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: cifs: Fix UAF in cifs_demultiplex_thread() There is a UAF when xfstests on cifs:   BUG: KASAN: use-after-free in smb2_is_network_name_deleted+0x27/0x160   Read of size 4 at addr ffff88810103fc08 by task cifsd/923   CPU: 1 PID: 923 Comm: cifsd Not tainted 6.1.0-rc4+ #45   ...   Call Trace:    &lt;TASK&gt;    dump_stack_lvl+0x34/0x44    print_report+0x171/0x472    kasan_report+0xad/0x130    kasan_check_range+0x145/0x1a0    smb2_is_network_name_deleted+0x27/0x160    cifs_demultiplex_thread.cold+0x172/0x5a4    kthread+0x165/0x1a0    ret_from_fork+0x1f/0x30    &lt;/TASK&gt;   Allocated by task 923:    kasan_save_stack+0x1e/0x40    kasan_set_track+0x21/0x30    __kasan_slab_alloc+0x54/0x60    kmem_cache_alloc+0x147/0x320    mempool_alloc+0xe1/0x260    cifs_small_buf_get+0x24/0x60    allocate_buffers+0xa1/0x1c0    cifs_demultiplex_thread+0x199/0x10d0    kthread+0x165/0x1a0    ret_from_fork+0x1f/0x30   Freed by task 921:    kasan_save_stack+0x1e/0x40    kasan_set_track+0x21/0x30    kasan_save_free_info+0x2a/0x40    ____kasan_slab_free+0x143/0x1b0    kmem_cache_free+0xe3/0x4d0    cifs_small_buf_release+0x29/0x90    SMB2_negotiate+0x8b7/0x1c60    smb2_negotiate+0x51/0x70    cifs_negotiate_protocol+0xf0/0x160    cifs_get_smb_ses+0x5fa/0x13c0    mount_get_conns+0x7a/0x750    cifs_mount+0x103/0xd00    cifs_smb3_do_mount+0x1dd/0xcb0    smb3_get_tree+0x1d5/0x300    vfs_get_tree+0x41/0xf0    path_mount+0x9b3/0xdd0    __x64_sys_mount+0x1…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-52572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0534</id>
    <title>WID-SEC-W-2024-0534 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T16:58:46.531995+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand herbeizuführen oder einen nicht spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0534"/>
  </entry>
</feed>
