<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T16:22:56.175897+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-01288</id>
    <title>bdu:2026-01288</title>
    <updated>2026-10-03T16:22:56.358866+00:00</updated>
    <content>bdu:2026-01288</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-01288"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2025-22039</id>
    <title>BELL-CVE-2025-22039</title>
    <updated>2026-10-03T16:22:56.358906+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2025-22039"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0559</id>
    <title>certfr-2025-avi-0559 — De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un a…</title>
    <updated>2026-10-03T16:22:56.358937+00:00</updated>
    <content>certfr-2025-avi-0559</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0559"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-367458</id>
    <title>EUVD-2026-367458</title>
    <updated>2026-10-03T16:22:56.358954+00:00</updated>
    <content>EUVD-2026-367458</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-367458"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-22039</id>
    <title>fkie_cve-2025-22039</title>
    <updated>2026-10-03T16:22:56.358965+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ksmbd: fix overflow in dacloffset bounds check</p>
<p>The dacloffset field was originally typed as int and used in an
unchecked addition, which could overflow and bypass the existing
bounds check in both smb_check_perm_dacl() and smb_inherit_dacl().</p>
<p>This could result in out-of-bounds memory access and a kernel crash
when dereferencing the DACL pointer.</p>
<p>This patch converts dacloffset to unsigned int and uses
check_add_overflow() to validate access to the DACL.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-22039"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-xm3p-r4jv-jxcf</id>
    <title>GHSA-xm3p-r4jv-jxcf</title>
    <updated>2026-10-03T16:22:56.358993+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ksmbd: fix overflow in dacloffset bounds check</p>
<p>The dacloffset field was originally typed as int and used in an
unchecked addition, which could overflow and bypass the existing
bounds check in both smb_check_perm_dacl() and smb_inherit_dacl().</p>
<p>This could result in out-of-bounds memory access and a kernel crash
when dereferencing the DACL pointer.</p>
<p>This patch converts dacloffset to unsigned int and uses
check_add_overflow() to validate access to the DACL.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-xm3p-r4jv-jxcf"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-22039</id>
    <title>msrc_CVE-2025-22039 — ksmbd: fix overflow in dacloffset bounds check</title>
    <updated>2026-10-03T16:22:56.359011+00:00</updated>
    <content>msrc_CVE-2025-22039</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-22039"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-2800</id>
    <title>OESA-2025-2800 — kernel security update</title>
    <updated>2026-10-03T16:22:56.359026+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP3: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ext4: update s_journal_inum if it changes after journal replay</p>
<p>When mounting a crafted ext4 image, s_journal_inum may change after journal
replay, which is obviously unreasonable because we have successfully loaded
and replayed the journal through the old s_journal_inum. And the new
s_journal_inum bypasses some of the checks in ext4_get_journal(), which
may trigger a null pointer dereference problem. So if s_journal_inum
changes after the journal replay, we ignore the change, and rewrite the
current journal_inum to the superblock.(CVE-2023-53091)</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>vxlan: Fix nexthop hash size</p>
<p>The nexthop code expects a 31 bit hash, such as what is returned by
fib_multipath_hash() and rt6_multipath_hash(). Passing the 32 bit hash
returned by skb_get_hash() can lead to problems related to the fact that
&amp;apos;int hash&amp;apos; is a negative number when the MSB is set.</p>
<p>In the case of hash threshold nexthop groups, nexthop_select_path_hthr()
will disproportionately select the first nexthop group entry. In the case
of resilient nexthop groups, nexthop_select_path_res() may do an out of
bounds access in nh_buckets[], for example:
    hash = -912054133
    num_nh_buckets = 2
    bucket_index = 65535</p>
<p>which leads to the following panic:</p>
<p>BUG: unable to handle page fault for address: ffffc9000…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-2800"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-22039</id>
    <title>UBUNTU-CVE-2025-22039</title>
    <updated>2026-10-03T16:22:56.359349+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 151 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix overflow in dacloffset bounds check The dacloffset field was originally typed as int and used in an unchecked addition, which could overflow and bypass the existing bounds check in both smb_check_perm_dacl() and smb_inherit_dacl(). This could result in out-of-bounds memory access and a kernel crash when dereferencing the DACL pointer. This patch converts dacloffset to unsigned int and uses check_add_overflow() to validate access to the DACL.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-22039"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0844</id>
    <title>WID-SEC-W-2025-0844 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T16:22:56.359561+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder andere, nicht genauer beschriebene Auswirkungen erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0844"/>
  </entry>
</feed>
