<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T19:23:29.153634+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-08072</id>
    <title>bdu:2024-08072</title>
    <updated>2026-10-03T19:23:29.581165+00:00</updated>
    <content>bdu:2024-08072</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-08072"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2024-46794</id>
    <title>BELL-CVE-2024-46794</title>
    <updated>2026-10-03T19:23:29.581229+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2024-46794"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0837</id>
    <title>certfr-2024-avi-0837 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Elles permettent à un attaquant de provo…</title>
    <updated>2026-10-03T19:23:29.581263+00:00</updated>
    <content>certfr-2024-avi-0837</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0837"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-313283</id>
    <title>EUVD-2026-313283</title>
    <updated>2026-10-03T19:23:29.581282+00:00</updated>
    <content>EUVD-2026-313283</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-313283"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-46794</id>
    <title>fkie_cve-2024-46794</title>
    <updated>2026-10-03T19:23:29.581293+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>x86/tdx: Fix data leak in mmio_read()</p>
<p>The mmio_read() function makes a TDVMCALL to retrieve MMIO data for an
address from the VMM.</p>
<p>Sean noticed that mmio_read() unintentionally exposes the value of an
initialized variable (val) on the stack to the VMM.</p>
<p>This variable is only needed as an output value. It did not need to be
passed to the VMM in the first place.</p>
<p>Do not send the original value of *val to the VMM.</p>
<p>[ dhansen: clarify what 'val' is used for. ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-46794"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-cx75-fvjc-vvr8</id>
    <title>GHSA-cx75-fvjc-vvr8</title>
    <updated>2026-10-03T19:23:29.581325+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>x86/tdx: Fix data leak in mmio_read()</p>
<p>The mmio_read() function makes a TDVMCALL to retrieve MMIO data for an
address from the VMM.</p>
<p>Sean noticed that mmio_read() unintentionally exposes the value of an
initialized variable (val) on the stack to the VMM.</p>
<p>This variable is only needed as an output value. It did not need to be
passed to the VMM in the first place.</p>
<p>Do not send the original value of *val to the VMM.</p>
<p>[ dhansen: clarify what 'val' is used for. ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-cx75-fvjc-vvr8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2024-46794</id>
    <title>msrc_CVE-2024-46794 — x86/tdx: Fix data leak in mmio_read()</title>
    <updated>2026-10-03T19:23:29.581345+00:00</updated>
    <content>msrc_CVE-2024-46794</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2024-46794"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2423</id>
    <title>OESA-2024-2423 — kernel security update</title>
    <updated>2026-10-03T19:23:29.581362+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):

In the Linux kernel, the following vulnerability has been resolved:

usb: typec: ucsi: Fix null pointer dereference in trace

ucsi_register_altmode checks IS_ERR for the alt pointer and treats
NULL as valid. When CONFIG_TYPEC_DP_ALTMODE is not enabled,
ucsi_register_displayport returns NULL which causes a NULL pointer
dereference in trace. Rather than return NULL, call
typec_port_register_altmode to register DisplayPort alternate mode
as a non-controllable mode when CONFIG_TYPEC_DP_ALTMODE is not enabled.(CVE-2024-46719)

In the Linux kernel, the following vulnerability has been resolved:

x86/tdx: Fix data leak in mmio_read()

The mmio_read() function makes a TDVMCALL to retrieve MMIO data for an
address from the VMM.

Sean noticed that mmio_read() unintentionally exposes the value of an
initialized variable (val) on the stack to the VMM.

This variable is only needed as an output value. It did not need to be
passed to the VMM in the first place.

Do not send the original value of *val to the VMM.

[ dhansen: clarify what &amp;apos;val&amp;apos; is used for. ](CVE-2024-46794)

In the Linux kernel, the following vulnerability has been resolved:

drm/amdkfd: Check debug trap enable before write dbg_ev_file

In interrupt context, write dbg_ev_file will be run by work queue. It
will cause write dbg_ev_file execution after debug_trap_disable, which
will cause NULL pointer access.
v2: canc…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2423"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:3551-1</id>
    <title>SUSE-SU-2024:3551-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T19:23:29.581493+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:3551-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-46794</id>
    <title>UBUNTU-CVE-2024-46794</title>
    <updated>2026-10-03T19:23:29.581600+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 89 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: x86/tdx: Fix data leak in mmio_read() The mmio_read() function makes a TDVMCALL to retrieve MMIO data for an address from the VMM. Sean noticed that mmio_read() unintentionally exposes the value of an initialized variable (val) on the stack to the VMM. This variable is only needed as an output value. It did not need to be passed to the VMM in the first place. Do not send the original value of *val to the VMM. [ dhansen: clarify what 'val' is used for. ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-46794"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2173</id>
    <title>WID-SEC-W-2024-2173 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T19:23:29.581741+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder einen unspezifischen Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2173"/>
  </entry>
</feed>
