<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:00:17.310035+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:4898</id>
    <title>ALSA-2026:4898 — Important: capstone security update</title>
    <updated>2026-10-03T05:00:17.573055+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: capstone, AlmaLinux:9: capstone-devel, AlmaLinux:9: capstone-java, AlmaLinux:9: python3-capstone</p>
<p>Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.</p>
<p>Security Fix(es):</p>
<p>* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)
  * capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:4898"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-04944</id>
    <title>bdu:2026-04944</title>
    <updated>2026-10-03T05:00:17.573124+00:00</updated>
    <content>bdu:2026-04944</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-04944"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2025-67873</id>
    <title>BELL-CVE-2025-67873</title>
    <updated>2026-10-03T05:00:17.573142+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:25: capstone, Alpaquita:stream: capstone</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2025-67873"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-264005</id>
    <title>EUVD-2026-264005</title>
    <updated>2026-10-03T05:00:17.573163+00:00</updated>
    <content>EUVD-2026-264005</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-264005"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-67873</id>
    <title>fkie_cve-2025-67873</title>
    <updated>2026-10-03T05:00:17.573175+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-67873"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2025-67873</id>
    <title>msrc_CVE-2025-67873 — Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow</title>
    <updated>2026-10-03T05:00:17.573198+00:00</updated>
    <content>msrc_CVE-2025-67873</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2025-67873"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:12781</id>
    <title>RHSA-2026:12781 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
    <updated>2026-10-03T05:00:17.573214+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:12781"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:4898</id>
    <title>RHSA-2026:4898 — Red Hat Security Advisory: capstone security update</title>
    <updated>2026-10-03T05:00:17.573233+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:4898"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:20054-1</id>
    <title>SUSE-SU-2026:20054-1 — Security update for capstone</title>
    <updated>2026-10-03T05:00:17.573250+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for capstone</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:20054-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-67873</id>
    <title>UBUNTU-CVE-2025-67873</title>
    <updated>2026-10-03T05:00:17.573265+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: capstone, Ubuntu:18.04:LTS: capstone, Ubuntu:20.04:LTS: capstone, Ubuntu:22.04:LTS: capstone, Ubuntu:24.04:LTS: capstone, Ubuntu:25.10: capstone, Ubuntu:26.04:LTS: capstone</p>
<p>Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-67873"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0769</id>
    <title>WID-SEC-W-2026-0769 — Red Hat Enterprise Linux (capstone) und OpenShift (rhcos): Mehrere Schwachstellen</title>
    <updated>2026-10-03T05:00:17.573295+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux und Red Hat OpenShift ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Dateien zu manipulieren, und um Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0769"/>
  </entry>
</feed>
