<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T19:38:48.565357+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-12178</id>
    <title>bdu:2026-12178</title>
    <updated>2026-10-02T19:38:48.609527+00:00</updated>
    <content>bdu:2026-12178</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-12178"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-43201</id>
    <title>BELL-CVE-2026-43201</title>
    <updated>2026-10-02T19:38:48.609570+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:25: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-43201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0558</id>
    <title>certfr-2026-avi-0558 — De multiples vulnérabilités ont été découvertes dans Microsoft Azure Linux. Elles permettent à un attaquant de provoque…</title>
    <updated>2026-10-02T19:38:48.609599+00:00</updated>
    <content>certfr-2026-avi-0558</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0558"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-320988</id>
    <title>EUVD-2026-320988</title>
    <updated>2026-10-02T19:38:48.609621+00:00</updated>
    <content>EUVD-2026-320988</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-320988"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-43201</id>
    <title>fkie_cve-2026-43201</title>
    <updated>2026-10-02T19:38:48.609645+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>APEI/GHES: ARM processor Error: don't go past allocated memory</p>
<p>If the BIOS generates a very small ARM Processor Error, or
an incomplete one, the current logic will fail to deferrence</p>
<p>err-&gt;section_length
and
	ctx_info-&gt;size</p>
<p>Add checks to avoid that. With such changes, such GHESv2
records won't cause OOPSes like this:</p>
<p>[    1.492129] Internal error: Oops: 0000000096000005 [#1]  SMP
[    1.495449] Modules linked in:
[    1.495820] CPU: 0 UID: 0 PID: 9 Comm: kworker/0:0 Not tainted 6.18.0-rc1-00017-gabadcc3553dd-dirty #18 PREEMPT
[    1.496125] Hardware name: QEMU QEMU Virtual Machine, BIOS unknown 02/02/2022
[    1.496433] Workqueue: kacpi_notify acpi_os_execute_deferred
[    1.496967] pstate: 814000c5 (Nzcv daIF +PAN -UAO -TCO +DIT -SSBS BTYPE=--)
[    1.497199] pc : log_arm_hw_error+0x5c/0x200
[    1.497380] lr : ghes_handle_arm_hw_error+0x94/0x220</p>
<p>0xffff8000811c5324 is in log_arm_hw_error (../drivers/ras/ras.c:75).
70		err_info = (struct cper_arm_err_info *)(err + 1);
71		ctx_info = (struct cper_arm_ctx_info *)(err_info + err-&gt;err_info_num);
72		ctx_err = (u8 *)ctx_info;
73
74		for (n = 0; n &lt; err-&gt;context_info_num; n++) {
75			sz = sizeof(struct cper_arm_ctx_info) + ctx_info-&gt;size;
76			ctx_info = (struct cper_arm_ctx_info *)((long)ctx_info + sz);
77			ctx_len += sz;
78		}
79</p>
<p>and similar ones while trying to access section_length on an
error dump with too small size.</p>
<p>[ rjw: Subject tweaks ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-43201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2439-4xrr-7j2r</id>
    <title>GHSA-2439-4xrr-7j2r</title>
    <updated>2026-10-02T19:38:48.609716+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>APEI/GHES: ARM processor Error: don't go past allocated memory</p>
<p>If the BIOS generates a very small ARM Processor Error, or
an incomplete one, the current logic will fail to deferrence</p>
<p>err-&gt;section_length
and
	ctx_info-&gt;size</p>
<p>Add checks to avoid that. With such changes, such GHESv2
records won't cause OOPSes like this:</p>
<p>[    1.492129] Internal error: Oops: 0000000096000005 [#1]  SMP
[    1.495449] Modules linked in:
[    1.495820] CPU: 0 UID: 0 PID: 9 Comm: kworker/0:0 Not tainted 6.18.0-rc1-00017-gabadcc3553dd-dirty #18 PREEMPT
[    1.496125] Hardware name: QEMU QEMU Virtual Machine, BIOS unknown 02/02/2022
[    1.496433] Workqueue: kacpi_notify acpi_os_execute_deferred
[    1.496967] pstate: 814000c5 (Nzcv daIF +PAN -UAO -TCO +DIT -SSBS BTYPE=--)
[    1.497199] pc : log_arm_hw_error+0x5c/0x200
[    1.497380] lr : ghes_handle_arm_hw_error+0x94/0x220</p>
<p>0xffff8000811c5324 is in log_arm_hw_error (../drivers/ras/ras.c:75).
70		err_info = (struct cper_arm_err_info *)(err + 1);
71		ctx_info = (struct cper_arm_ctx_info *)(err_info + err-&gt;err_info_num);
72		ctx_err = (u8 *)ctx_info;
73
74		for (n = 0; n &lt; err-&gt;context_info_num; n++) {
75			sz = sizeof(struct cper_arm_ctx_info) + ctx_info-&gt;size;
76			ctx_info = (struct cper_arm_ctx_info *)((long)ctx_info + sz);
77			ctx_len += sz;
78		}
79</p>
<p>and similar ones while trying to access section_length on an
error dump with too small size.</p>
<p>[ rjw: Subject tweaks ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2439-4xrr-7j2r"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-43201</id>
    <title>msrc_CVE-2026-43201 — APEI/GHES: ARM processor Error: don't go past allocated memory</title>
    <updated>2026-10-02T19:38:48.609799+00:00</updated>
    <content>msrc_CVE-2026-43201</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-43201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-43201</id>
    <title>UBUNTU-CVE-2026-43201</title>
    <updated>2026-10-02T19:38:48.609821+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 232 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: APEI/GHES: ARM processor Error: don't go past allocated memory If the BIOS generates a very small ARM Processor Error, or an incomplete one, the current logic will fail to deferrence 	err-&gt;section_length and 	ctx_info-&gt;size Add checks to avoid that. With such changes, such GHESv2 records won't cause OOPSes like this: [    1.492129] Internal error: Oops: 0000000096000005 [#1]  SMP [    1.495449] Modules linked in: [    1.495820] CPU: 0 UID: 0 PID: 9 Comm: kworker/0:0 Not tainted 6.18.0-rc1-00017-gabadcc3553dd-dirty #18 PREEMPT [    1.496125] Hardware name: QEMU QEMU Virtual Machine, BIOS unknown 02/02/2022 [    1.496433] Workqueue: kacpi_notify acpi_os_execute_deferred [    1.496967] pstate: 814000c5 (Nzcv daIF +PAN -UAO -TCO +DIT -SSBS BTYPE=--) [    1.497199] pc : log_arm_hw_error+0x5c/0x200 [    1.497380] lr : ghes_handle_arm_hw_error+0x94/0x220 0xffff8000811c5324 is in log_arm_hw_error (../drivers/ras/ras.c:75). 70		err_info = (struct cper_arm_err_info *)(err + 1); 71		ctx_info = (struct cper_arm_ctx_info *)(err_info + err-&gt;err_info_num); 72		ctx_err = (u8 *)ctx_info; 73 74		for (n = 0; n &lt; err-&gt;context_info_num; n++) { 75			sz = sizeof(struct cper_arm_ctx_info) + ctx_info-&gt;size; 76			ctx_info = (struct cper_arm_ctx_info *)((long)ctx_info + sz); 77			ctx_len += sz; 78		} 79 and similar ones while trying to access section_length on an error dump with too small size. [ rjw: Subject tweaks ]</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-43201"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1405</id>
    <title>WID-SEC-W-2026-1405 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-02T19:38:48.610153+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um nicht spezifizierte Angriffe durchzuführen, möglicherweise Sicherheitsmaßnahmen zu umgehen, Daten zu manipulieren oder offenzulegen oder einen Denial-of-Service-Zustand zu verursachen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1405"/>
  </entry>
</feed>
