<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T22:28:24.024910+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-331838</id>
    <title>EUVD-2026-331838</title>
    <updated>2026-10-06T22:28:24.028085+00:00</updated>
    <content>EUVD-2026-331838</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-331838"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-35505</id>
    <title>fkie_cve-2026-35505</title>
    <updated>2026-10-06T22:28:24.028118+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process deployments the memory grows until the service is killed and the port stops responding until restart.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-35505"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p8qm-mxfj-7vc2</id>
    <title>GHSA-p8qm-mxfj-7vc2</title>
    <updated>2026-10-06T22:28:24.028148+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process deployments the memory grows until the service is killed and the port stops responding until restart.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p8qm-mxfj-7vc2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsma-26-181-01</id>
    <title>ICSMA-26-181-01 — OFFIS DCMTK Toolkit</title>
    <updated>2026-10-06T22:28:24.028164+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A malicious or compromised server can make a DCMTK client using bit-preserving C-GET storage mode write files outside the chosen output directory, using both relative (../) paths and absolute paths. An unauthenticated remote attacker can repeatedly send a single crafted connection request to leak memory. Against storescp in its default single-process mode, memory grows quickly and the service is eventually killed, after which it stops accepting connections until an operator restarts it. An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process deployments the memory grows until the service is killed and the port stops responding until restart. An unauthenticated attacker can read worklist records from a directory outside the intended per-AE worklist storage area. In a multi-area deployment, this can cross departmental or clinic data separation. An unauthenticated attacker can crash the worklist server with a single crafted query when the server has a valid Called AE Title / storage directory, the expected lockfile, and at least one matching worklist record.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsma-26-181-01"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-35505</id>
    <title>UBUNTU-CVE-2026-35505</title>
    <updated>2026-10-06T22:28:24.028191+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: dcmtk, Ubuntu:Pro:18.04:LTS: dcmtk, Ubuntu:Pro:20.04:LTS: dcmtk, Ubuntu:Pro:22.04:LTS: dcmtk, Ubuntu:Pro:24.04:LTS: dcmtk, Ubuntu:25.10: dcmtk, Ubuntu:26.04:LTS: dcmtk</p>
<p>An unauthenticated remote attacker can repeatedly send crafted connection requests to leak memory. In single-process deployments the memory grows until the service is killed and the port stops responding until restart.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-35505"/>
  </entry>
</feed>
