<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T12:49:27.406514+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2024:6837</id>
    <title>ALSA-2024:6837 — Important: pcp security update</title>
    <updated>2026-10-04T12:49:27.469388+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: pcp, AlmaLinux:8: pcp-conf, AlmaLinux:8: pcp-devel, AlmaLinux:8: pcp-doc, AlmaLinux:8: pcp-export-pcp2elasticsearch, AlmaLinux:8: pcp-export-pcp2graphite, AlmaLinux:8: pcp-export-pcp2influxdb, AlmaLinux:8: pcp-export-pcp2json, AlmaLinux:8: pcp-export-pcp2spark, AlmaLinux:8: pcp-export-pcp2xml and 90 more</p>
<p>Performance Co-Pilot (PCP) is a suite of tools, services, and libraries for acquisition, archiving, and analysis of system-level performance measurements. Its light-weight distributed architecture makes it particularly well-suited to centralized analysis of complex systems.</p>
<p>Security Fix(es):</p>
<p>* pcp: pmpost symlink attack allows escalating pcp to root user (CVE-2024-45770)
* pcp: pmcd heap corruption through metric pmstore operations (CVE-2024-45769)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2024:6837"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-12383</id>
    <title>bdu:2025-12383</title>
    <updated>2026-10-04T12:49:27.469576+00:00</updated>
    <content>bdu:2025-12383</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-12383"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0106</id>
    <title>certfr-2025-avi-0106 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-04T12:49:27.469596+00:00</updated>
    <content>certfr-2025-avi-0106</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0106"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-261539</id>
    <title>EUVD-2026-261539</title>
    <updated>2026-10-04T12:49:27.469613+00:00</updated>
    <content>EUVD-2026-261539</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-261539"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-45769</id>
    <title>fkie_cve-2024-45769</title>
    <updated>2026-10-04T12:49:27.469624+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-45769"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-prr3-v2fg-ggg7</id>
    <title>GHSA-prr3-v2fg-ggg7</title>
    <updated>2026-10-04T12:49:27.469647+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-prr3-v2fg-ggg7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2024-45769</id>
    <title>msrc_CVE-2024-45769 — Pcp: pmcd heap corruption through metric pmstore operations</title>
    <updated>2026-10-04T12:49:27.469661+00:00</updated>
    <content>msrc_CVE-2024-45769</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2024-45769"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1293</id>
    <title>OESA-2025-1293 — pcp security update</title>
    <updated>2026-10-04T12:49:27.469678+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: pcp</p>
<p>PCP provides a range of services that may be used to monitor and manage system performance. These services are distributed and scalable to accommodate the most complex system configurations and performance problems.

Security Fix(es):</p>
<p>A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.(CVE-2024-45769)</p>
<p>A vulnerability was found in Performance Co-Pilot (PCP). This flaw can only be exploited if an attacker has access to a compromised PCP system account. The issue is related to the pmpost tool, which is used to log messages in the system. Under certain conditions, it runs with high-level privileges.(CVE-2024-45770)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1293"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10705-1</id>
    <title>openSUSE-SU-2026:10705-1 — libpcp-devel-6.3.8-1.1 on GA media</title>
    <updated>2026-10-04T12:49:27.469705+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libpcp-devel-6.3.8-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10705-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:6840</id>
    <title>RHSA-2024:6840 — Red Hat Security Advisory: pcp security update</title>
    <updated>2026-10-04T12:49:27.469723+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>pcp: pmcd heap corruption through metric pmstore operations pcp: pmpost symlink attack allows escalating pcp to root user</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:6840"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:3533-1</id>
    <title>SUSE-SU-2024:3533-1 — Security update for pcp</title>
    <updated>2026-10-04T12:49:27.469741+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for pcp</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:3533-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-45769</id>
    <title>UBUNTU-CVE-2024-45769</title>
    <updated>2026-10-04T12:49:27.469757+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: pcp, Ubuntu:18.04:LTS: pcp, Ubuntu:20.04:LTS: pcp, Ubuntu:22.04:LTS: pcp, Ubuntu:24.04:LTS: pcp, Ubuntu:26.04:LTS: pcp</p>
<p>A vulnerability was found in Performance Co-Pilot (PCP).  This flaw allows an attacker to send specially crafted data to the system, which could cause the program to misbehave or crash.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-45769"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2186</id>
    <title>WID-SEC-W-2024-2186 — Red Hat Enterprise Linux: Mehrere Schwachstellen</title>
    <updated>2026-10-04T12:49:27.469782+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen und erweiterte Rechte zu erlangen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2186"/>
  </entry>
</feed>
