<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T22:02:36.205152+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-01221</id>
    <title>bdu:2026-01221</title>
    <updated>2026-10-03T22:02:36.580205+00:00</updated>
    <content>bdu:2026-01221</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-01221"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2023-54121</id>
    <title>BELL-CVE-2023-54121</title>
    <updated>2026-10-03T22:02:36.580272+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2023-54121"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0108</id>
    <title>certfr-2026-avi-0108 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T22:02:36.580305+00:00</updated>
    <content>certfr-2026-avi-0108</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0108"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-345382</id>
    <title>EUVD-2026-345382</title>
    <updated>2026-10-03T22:02:36.580324+00:00</updated>
    <content>EUVD-2026-345382</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-345382"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-54121</id>
    <title>fkie_cve-2023-54121</title>
    <updated>2026-10-03T22:02:36.580335+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>btrfs: fix incorrect splitting in btrfs_drop_extent_map_range</p>
<p>In production we were seeing a variety of WARN_ON()'s in the extent_map
code, specifically in btrfs_drop_extent_map_range() when we have to call
add_extent_mapping() for our second split.</p>
<p>Consider the following extent map layout</p>
<p>PINNED
	[0 16K)  [32K, 48K)</p>
<p>and then we call btrfs_drop_extent_map_range for [0, 36K), with
skip_pinned == true.  The initial loop will have</p>
<p>start = 0
	end = 36K
	len = 36K</p>
<p>we will find the [0, 16k) extent, but since we are pinned we will skip
it, which has this code</p>
<p>start = em_end;
	if (end != (u64)-1)
		len = start + len - em_end;</p>
<p>em_end here is 16K, so now the values are</p>
<p>start = 16K
	len = 16K + 36K - 16K = 36K</p>
<p>len should instead be 20K.  This is a problem when we find the next
extent at [32K, 48K), we need to split this extent to leave [36K, 48k),
however the code for the split looks like this</p>
<p>split-&gt;start = start + len;
	split-&gt;len = em_end - (start + len);</p>
<p>In this case we have</p>
<p>em_end = 48K
	split-&gt;start = 16K + 36K       // this should be 16K + 20K
	split-&gt;len = 48K - (16K + 36K) // this overflows as 16K + 36K is 52K</p>
<p>and now we have an invalid extent_map in the tree that potentially
overlaps other entries in the extent map.  Even in the non-overlapping
case we will have split-&gt;start set improperly, which will cause problems
with any block related calculations.</p>
<p>We don't actually need len in this…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-54121"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-8482-4rvj-5h62</id>
    <title>GHSA-8482-4rvj-5h62</title>
    <updated>2026-10-03T22:02:36.580391+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>btrfs: fix incorrect splitting in btrfs_drop_extent_map_range</p>
<p>In production we were seeing a variety of WARN_ON()'s in the extent_map
code, specifically in btrfs_drop_extent_map_range() when we have to call
add_extent_mapping() for our second split.</p>
<p>Consider the following extent map layout</p>
<p>PINNED
	[0 16K)  [32K, 48K)</p>
<p>and then we call btrfs_drop_extent_map_range for [0, 36K), with
skip_pinned == true.  The initial loop will have</p>
<p>start = 0
	end = 36K
	len = 36K</p>
<p>we will find the [0, 16k) extent, but since we are pinned we will skip
it, which has this code</p>
<p>start = em_end;
	if (end != (u64)-1)
		len = start + len - em_end;</p>
<p>em_end here is 16K, so now the values are</p>
<p>start = 16K
	len = 16K + 36K - 16K = 36K</p>
<p>len should instead be 20K.  This is a problem when we find the next
extent at [32K, 48K), we need to split this extent to leave [36K, 48k),
however the code for the split looks like this</p>
<p>split-&gt;start = start + len;
	split-&gt;len = em_end - (start + len);</p>
<p>In this case we have</p>
<p>em_end = 48K
	split-&gt;start = 16K + 36K       // this should be 16K + 20K
	split-&gt;len = 48K - (16K + 36K) // this overflows as 16K + 36K is 52K</p>
<p>and now we have an invalid extent_map in the tree that potentially
overlaps other entries in the extent map.  Even in the non-overlapping
case we will have split-&gt;start set improperly, which will cause problems
with any block related calculations.</p>
<p>We don't actually need len in this…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-8482-4rvj-5h62"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:0278-1</id>
    <title>SUSE-SU-2026:0278-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T22:02:36.580441+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:0278-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-54121</id>
    <title>UBUNTU-CVE-2023-54121</title>
    <updated>2026-10-03T22:02:36.580686+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 171 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: btrfs: fix incorrect splitting in btrfs_drop_extent_map_range In production we were seeing a variety of WARN_ON()'s in the extent_map code, specifically in btrfs_drop_extent_map_range() when we have to call add_extent_mapping() for our second split. Consider the following extent map layout 	PINNED 	[0 16K)  [32K, 48K) and then we call btrfs_drop_extent_map_range for [0, 36K), with skip_pinned == true.  The initial loop will have 	start = 0 	end = 36K 	len = 36K we will find the [0, 16k) extent, but since we are pinned we will skip it, which has this code 	start = em_end; 	if (end != (u64)-1) 		len = start + len - em_end; em_end here is 16K, so now the values are 	start = 16K 	len = 16K + 36K - 16K = 36K len should instead be 20K.  This is a problem when we find the next extent at [32K, 48K), we need to split this extent to leave [36K, 48k), however the code for the split looks like this 	split-&gt;start = start + len; 	split-&gt;len = em_end - (start + len); In this case we have 	em_end = 48K 	split-&gt;start = 16K + 36K       // this should be 16K + 20K 	split-&gt;len = 48K - (16K + 36K) // this overflows as 16K + 36K is 52K and now we have an invalid extent_map in the tree that potentially overlaps other entries in the extent map.  Even in the non-overlapping case we will have split-&gt;start set improperly, which will cause problems with any block related calculations. We don't actually need len in this loop, we can sim…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-54121"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2929</id>
    <title>WID-SEC-W-2025-2929 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T22:02:36.580897+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um nicht näher spezifizierte Angriffe durchzuführen, die möglicherweise zu einer Denial-of-Service- Bedingung führen oder eine Speicherbeschädigung verursachen können.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2929"/>
  </entry>
</feed>
