<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:51:56.852018+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2025:9118</id>
    <title>ALSA-2025:9118 — Important: libvpx security update</title>
    <updated>2026-10-02T20:51:56.895853+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: libvpx, AlmaLinux:9: libvpx-devel</p>
<p>The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.</p>
<p>Security Fix(es):</p>
<p>* libvpx: Double-free in libvpx encoder (CVE-2025-5283)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2025:9118"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2025-06284</id>
    <title>bdu:2025-06284</title>
    <updated>2026-10-02T20:51:56.895922+00:00</updated>
    <content>bdu:2025-06284</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2025-06284"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0455</id>
    <title>certfr-2025-avi-0455 — De multiples vulnérabilités ont été découvertes dans Google Chrome. Elles permettent à un attaquant de provoquer un pro…</title>
    <updated>2026-10-02T20:51:56.895940+00:00</updated>
    <content>certfr-2025-avi-0455</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0455"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2025-11244</id>
    <title>cnvd-2025-11244</title>
    <updated>2026-10-02T20:51:56.895955+00:00</updated>
    <content>cnvd-2025-11244</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2025-11244"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-257981</id>
    <title>EUVD-2026-257981</title>
    <updated>2026-10-02T20:51:56.895967+00:00</updated>
    <content>EUVD-2026-257981</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-257981"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-5283</id>
    <title>fkie_cve-2025-5283</title>
    <updated>2026-10-02T20:51:56.895976+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-5283"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-j84v-78j2-55gh</id>
    <title>GHSA-j84v-78j2-55gh</title>
    <updated>2026-10-02T20:51:56.895997+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-j84v-78j2-55gh"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2025-1592</id>
    <title>OESA-2025-1592 — libvpx security update</title>
    <updated>2026-10-02T20:51:56.896011+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP1: libvpx, openEuler:20.03-LTS-SP4: libvpx, openEuler:22.03-LTS-SP3: libvpx, openEuler:22.03-LTS-SP4: libvpx, openEuler:24.03-LTS: libvpx</p>
<p>libvpx provides the VP8/VP9 SDK, which allows you to integrate your applications with the VP8 and VP9 video codecs, high quality, royalty free, open source codecs deployed on millions of computers and devices worldwide.

Security Fix(es):</p>
<p>Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)(CVE-2025-5283)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2025-1592"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15210-1</id>
    <title>openSUSE-SU-2025:15210-1 — chromedriver-138.0.7204.96-1.1 on GA media</title>
    <updated>2026-10-02T20:51:56.896039+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>chromedriver-138.0.7204.96-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2025:15210-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2025:8341</id>
    <title>RHSA-2025:8341 — Red Hat Security Advisory: firefox security update</title>
    <updated>2026-10-02T20:51:56.896065+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>firefox: thunderbird: Error handling for script execution was incorrectly isolated from web content firefox: thunderbird: Potential local code execution in “Copy as cURL” command firefox: thunderbird: Script element events leaked cross-origin resource status firefox: thunderbird: Clickjacking vulnerability could have led to leaking saved payment card details firefox: thunderbird: Memory safety bugs firefox: thunderbird: Memory safety bug libvpx: Double-free in libvpx encoder</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2025:8341"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2025:21170-1</id>
    <title>SUSE-SU-2025:21170-1 — Security update for mozjs128</title>
    <updated>2026-10-02T20:51:56.896091+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for mozjs128</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2025:21170-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-5283</id>
    <title>UBUNTU-CVE-2025-5283</title>
    <updated>2026-10-02T20:51:56.896116+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: libvpx, Ubuntu:Pro:18.04:LTS: libvpx, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: libvpx, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: libvpx, Ubuntu:22.04:LTS: mozjs102, Ubuntu:22.04:LTS: mozjs78 and 5 more</p>
<p>Use after free in libvpx in Google Chrome prior to 137.0.7151.55 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-5283"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1158</id>
    <title>WID-SEC-W-2025-1158 — Google Chrome / Microsoft Edge: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
    <updated>2026-10-02T20:51:56.896149+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter anonymer Angreifer kann mehrere Schwachstellen in Google Chrome / Microsoft Edge ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1158"/>
  </entry>
</feed>
