<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T00:22:12.059465+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-257570</id>
    <title>EUVD-2026-257570</title>
    <updated>2026-10-03T00:22:12.132968+00:00</updated>
    <content>EUVD-2026-257570</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-257570"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-54572</id>
    <title>fkie_cve-2025-54572</title>
    <updated>2026-10-03T00:22:12.133004+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The Ruby SAML library is for implementing the client side of a SAML authorization. In versions 1.18.0 and below, a denial-of-service vulnerability exists in ruby-saml even with the message_max_bytesize setting configured. The vulnerability occurs because the SAML response is validated for Base64 format prior to checking the message size, leading to potential resource exhaustion. This is fixed in version 1.18.1.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-54572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rrqh-93c8-j966</id>
    <title>GHSA-rrqh-93c8-j966 — Ruby SAML DOS vulnerability with large SAML response</title>
    <updated>2026-10-03T00:22:12.133038+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> RubyGems: ruby-saml</p>
<p>### Summary
A denial-of-service vulnerability exists in ruby-saml even with the message_max_bytesize setting configured. The vulnerability occurs because the SAML response is validated for Base64 format prior to checking the message size, leading to potential resource exhaustion.</p>
<p>### Details
`ruby-saml` includes a `message_max_bytesize` setting intended to prevent DOS attacks and decompression bombs. However, this protection is ineffective in some cases due to the order of operations in the code:</p>
<p>https://github.com/SAML-Toolkits/ruby-saml/blob/fbbedc978300deb9355a8e505849666974ef2e67/lib/onelogin/ruby-saml/saml_message.rb</p>
<p>```ruby
      def decode_raw_saml(saml, settings = nil)
        return saml unless base64_encoded?(saml) # &lt;--- Issue here. Should be moved after next code block.</p>
<p>settings = OneLogin::RubySaml::Settings.new if settings.nil?
        if saml.bytesize &gt; settings.message_max_bytesize
          raise ValidationError.new("Encoded SAML Message exceeds " + settings.message_max_bytesize.to_s + " bytes, so was rejected")
        end</p>
<p>decoded = decode(saml)
        ...
      end
```</p>
<p>The vulnerability is in the execution order. Prior to checking bytesize the `base64_encoded?` function performs regex matching on the entire input string:</p>
<p>```ruby
!!string.gsub(/[\r\n]|\\r|\\n|\s/, "").match(BASE64_FORMAT)
```</p>
<p>### Impact
_What kind of vulnerability is it? Who is impacted?_</p>
<p>When successfully exploited, this vulnerability can lead to:</p>
<p>- Excessive mem…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rrqh-93c8-j966"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-54572</id>
    <title>UBUNTU-CVE-2025-54572</title>
    <updated>2026-10-03T00:22:12.133086+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: ruby-saml, Ubuntu:Pro:18.04:LTS: ruby-saml, Ubuntu:Pro:20.04:LTS: ruby-saml, Ubuntu:Pro:22.04:LTS: ruby-saml, Ubuntu:Pro:24.04:LTS: ruby-saml</p>
<p>The Ruby SAML library is for implementing the client side of a SAML authorization. In versions 1.18.0 and below, a denial-of-service vulnerability exists in ruby-saml even with the message_max_bytesize setting configured. The vulnerability occurs because the SAML response is validated for Base64 format prior to checking the message size, leading to potential resource exhaustion. This is fixed in version 1.18.1.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-54572"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1686</id>
    <title>WID-SEC-W-2025-1686 — Ruby SAML: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-03T00:22:12.133114+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Ruby SAML ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1686"/>
  </entry>
</feed>
