<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T11:34:01.287405+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-03683</id>
    <title>bdu:2025-03683</title>
    <updated>2026-10-04T11:34:01.624618+00:00</updated>
    <content>bdu:2025-03683</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-03683"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2025-21881</id>
    <title>BELL-CVE-2025-21881</title>
    <updated>2026-10-04T11:34:01.624698+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2025-21881"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333</id>
    <title>certfr-2025-avi-0333 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Elles permettent à un attaquant de provo…</title>
    <updated>2026-10-04T11:34:01.624734+00:00</updated>
    <content>certfr-2025-avi-0333</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-314079</id>
    <title>EUVD-2026-314079</title>
    <updated>2026-10-04T11:34:01.624753+00:00</updated>
    <content>EUVD-2026-314079</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-314079"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-21881</id>
    <title>fkie_cve-2025-21881</title>
    <updated>2026-10-04T11:34:01.624764+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>uprobes: Reject the shared zeropage in uprobe_write_opcode()</p>
<p>We triggered the following crash in syzkaller tests:</p>
<p>BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &lt;TASK&gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2</p>
<p>BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1</p>
<p>The following syzkaller test case can be used to reproduce:</p>
<p>r2 = creat(&amp;(0x7f0000000000)='./file0\x00', 0x8)
  write$nbd(r2, &amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;(0x7f0000000040)='./file0\x00', 0x42, 0x0)
  mma…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-21881"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-v2hx-rxf2-p233</id>
    <title>GHSA-v2hx-rxf2-p233</title>
    <updated>2026-10-04T11:34:01.624819+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>uprobes: Reject the shared zeropage in uprobe_write_opcode()</p>
<p>We triggered the following crash in syzkaller tests:</p>
<p>BUG: Bad page state in process syz.7.38  pfn:1eff3
  page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3
  flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)
  raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000
  raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000
  page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set
  Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014
  Call Trace:
   &lt;TASK&gt;
   dump_stack_lvl+0x32/0x50
   bad_page+0x69/0xf0
   free_unref_page_prepare+0x401/0x500
   free_unref_page+0x6d/0x1b0
   uprobe_write_opcode+0x460/0x8e0
   install_breakpoint.part.0+0x51/0x80
   register_for_each_vma+0x1d9/0x2b0
   __uprobe_register+0x245/0x300
   bpf_uprobe_multi_link_attach+0x29b/0x4f0
   link_create+0x1e2/0x280
   __sys_bpf+0x75f/0xac0
   __x64_sys_bpf+0x1a/0x30
   do_syscall_64+0x56/0x100
   entry_SYSCALL_64_after_hwframe+0x78/0xe2</p>
<p>BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1</p>
<p>The following syzkaller test case can be used to reproduce:</p>
<p>r2 = creat(&amp;(0x7f0000000000)='./file0\x00', 0x8)
  write$nbd(r2, &amp;(0x7f0000000580)=ANY=[], 0x10)
  r4 = openat(0xffffffffffffff9c, &amp;(0x7f0000000040)='./file0\x00', 0x42, 0x0)
  mma…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-v2hx-rxf2-p233"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-21881</id>
    <title>msrc_CVE-2025-21881 — uprobes: Reject the shared zeropage in uprobe_write_opcode()</title>
    <updated>2026-10-04T11:34:01.624862+00:00</updated>
    <content>msrc_CVE-2025-21881</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-21881"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1409</id>
    <title>OESA-2025-1409 — kernel security update</title>
    <updated>2026-10-04T11:34:01.624881+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>fs/ntfs3: Fix some memory leaks in an error handling path of &amp;apos;log_replay()&amp;apos;</p>
<p>All error handling paths lead to &amp;apos;out&amp;apos; where many resources are freed.</p>
<p>Do it as well here instead of a direct return, otherwise &amp;apos;log&amp;apos;, &amp;apos;ra&amp;apos; and
&amp;apos;log-&amp;gt;one_page_buf&amp;apos; (at least) will leak.(CVE-2021-47660)</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>list: fix a data-race around ep-&amp;gt;rdllist</p>
<p>ep_poll() first calls ep_events_available() with no lock held and checks
if ep-&amp;gt;rdllist is empty by list_empty_careful(), which reads
rdllist-&amp;gt;prev.  Thus all accesses to it need some protection to avoid
store/load-tearing.</p>
<p>Note INIT_LIST_HEAD_RCU() already has the annotation for both prev
and next.</p>
<p>Commit bf3b9f6372c4 (&amp;quot;epoll: Add busy poll support to epoll with socket
fds.&amp;quot;) added the first lockless ep_events_available(), and commit
c5a282e9635e (&amp;quot;fs/epoll: reduce the scope of wq lock in epoll_wait()&amp;quot;)
made some ep_events_available() calls lockless and added single call under
a lock, finally commit e59d3c64cba6 (&amp;quot;epoll: eliminate unnecessary lock
for zero timeout&amp;quot;) made the last ep_events_available() lockless.</p>
<p>BUG: KCSAN: data-race in do_epoll_wait / do_epoll_wait</p>
<p>write to 0xffff88810480c7d8 of 8 bytes by task 1802 on cpu 0:
 INIT_LIST_HEAD include/linux…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1409"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:01600-1</id>
    <title>SUSE-SU-2025:01600-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-04T11:34:01.625043+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:01600-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21881</id>
    <title>UBUNTU-CVE-2025-21881</title>
    <updated>2026-10-04T11:34:01.625122+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 202 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: uprobes: Reject the shared zeropage in uprobe_write_opcode() We triggered the following crash in syzkaller tests:   BUG: Bad page state in process syz.7.38  pfn:1eff3   page: refcount:0 mapcount:0 mapping:0000000000000000 index:0x0 pfn:0x1eff3   flags: 0x3fffff00004004(referenced|reserved|node=0|zone=1|lastcpupid=0x1fffff)   raw: 003fffff00004004 ffffe6c6c07bfcc8 ffffe6c6c07bfcc8 0000000000000000   raw: 0000000000000000 0000000000000000 00000000fffffffe 0000000000000000   page dumped because: PAGE_FLAGS_CHECK_AT_FREE flag(s) set   Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014   Call Trace:    &lt;TASK&gt;    dump_stack_lvl+0x32/0x50    bad_page+0x69/0xf0    free_unref_page_prepare+0x401/0x500    free_unref_page+0x6d/0x1b0    uprobe_write_opcode+0x460/0x8e0    install_breakpoint.part.0+0x51/0x80    register_for_each_vma+0x1d9/0x2b0    __uprobe_register+0x245/0x300    bpf_uprobe_multi_link_attach+0x29b/0x4f0    link_create+0x1e2/0x280    __sys_bpf+0x75f/0xac0    __x64_sys_bpf+0x1a/0x30    do_syscall_64+0x56/0x100    entry_SYSCALL_64_after_hwframe+0x78/0xe2    BUG: Bad rss-counter state mm:00000000452453e0 type:MM_FILEPAGES val:-1 The following syzkaller test case can be used to reproduce:   r2 = creat(&amp;(0x7f0000000000)='./file0\x00', 0x8)   write$nbd(r2, &amp;(0x7f0000000580)=ANY=[], 0x10)   r4 = openat(0xffffffffffffff9c, &amp;(0x7f0000000040)='./file0\x00', 0x42, 0x0)   mmap$IORI…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21881"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0649</id>
    <title>WID-SEC-W-2025-0649 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-04T11:34:01.625417+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht spezifizierte Effekte zu erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0649"/>
  </entry>
</feed>
