<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-07T10:43:33.109121+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-13574</id>
    <title>BELL-CVE-2026-13574</title>
    <updated>2026-10-07T10:43:33.192866+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: llvm15, Alpaquita:25: llvm19, Alpaquita:stream: llvm19, Alpaquita:stream: llvm21, Alpaquita:stream: llvm22</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-13574"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-333686</id>
    <title>EUVD-2026-333686</title>
    <updated>2026-10-07T10:43:33.192924+00:00</updated>
    <content>EUVD-2026-333686</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-333686"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-13574</id>
    <title>fkie_cve-2026-13574</title>
    <updated>2026-10-07T10:43:33.192940+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was determined in llvm llvm-project up to 22.1.6. This impacts the function GCRelocateInst::getBasePtr in the library llvm/lib/IR/IntrinsicInst.cpp of the component Bitcode File Handler. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. There are still doubts about whether this vulnerability truly exists. The LLVM project explains, that the reported behavior is outside its documented security scope and therefore not considered a security vulnerability.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-13574"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-pf97-7r98-qpj7</id>
    <title>GHSA-pf97-7r98-qpj7</title>
    <updated>2026-10-07T10:43:33.192967+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A vulnerability was determined in llvm llvm-project up to 22.1.6. This impacts the function GCRelocateInst::getBasePtr in the library llvm/lib/IR/IntrinsicInst.cpp of the component Bitcode File Handler. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. The project was informed of the problem early through an issue report but has not responded yet.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-pf97-7r98-qpj7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:24069</id>
    <title>RHSA-2026:24069 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
    <updated>2026-10-07T10:43:33.192983+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>llvm: llvm: Denial of Service via stack-based buffer overflow in StringMap::insert llvm: llvm-project: LLVM: Denial of service via heap-based buffer overflow in Bitcode File Handler urllib3: urllib3: Denial of Service due to excessive HTTP response decompression brace-expansion: brace-expansion: Denial of Service due to excessive memory allocation when expanding large numeric ranges</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:24069"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-13574</id>
    <title>UBUNTU-CVE-2026-13574</title>
    <updated>2026-10-07T10:43:33.193008+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:20.04:LTS: llvm-toolchain-18, Ubuntu:24.04:LTS: llvm-toolchain-18, Ubuntu:24.04:LTS: llvm-toolchain-19, Ubuntu:25.10: llvm-toolchain-18, Ubuntu:25.10: llvm-toolchain-19, Ubuntu:25.10: llvm-toolchain-21, Ubuntu:26.04:LTS: llvm-toolchain-18, Ubuntu:26.04:LTS: llvm-toolchain-19, Ubuntu:26.04:LTS: llvm-toolchain-21, Ubuntu:26.04:LTS: llvm-toolchain-22</p>
<p>A vulnerability was determined in llvm llvm-project up to 22.1.6. This impacts the function GCRelocateInst::getBasePtr in the library llvm/lib/IR/IntrinsicInst.cpp of the component Bitcode File Handler. This manipulation causes heap-based buffer overflow. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. There are still doubts about whether this vulnerability truly exists. The LLVM project explains, that the reported behavior is outside its documented security scope and therefore not considered a security vulnerability.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-13574"/>
  </entry>
</feed>
