<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:30:57.456939+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0958</id>
    <title>certfr-2026-avi-0958 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T16:30:58.093532+00:00</updated>
    <content>certfr-2026-avi-0958</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0958"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-cl03013</id>
    <title>Withdrawn: CLEANSTART-2026-CL03013 — Netty is an asynchronous, event-driven network application framework</title>
    <updated>2026-10-02T16:30:58.093602+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: apache-hive</p>
<p>Multiple security vulnerabilities affect the apache-hive package. Netty is an asynchronous, event-driven network application framework. See references for individual vulnerability details.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-cl03013"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-370196</id>
    <title>EUVD-2026-370196</title>
    <updated>2026-10-02T16:30:58.093639+00:00</updated>
    <content>EUVD-2026-370196</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-370196"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-45292</id>
    <title>fkie_cve-2026-45292</title>
    <updated>2026-10-02T16:30:58.093653+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>opentelemetry-java is the Java implementation of the OpenTelemetry API for recording telemetry, and SDK for managing telemetry recorded by the API. Prior to 1.62.0, a vulnerability affects the baggage propagation implementation in opentelemetry-api and opentelemetry-extension-trace-propagators. Parsing oversized baggage causes unbounded memory allocation and CPU consumption. Because baggage is automatically re-injected into every outgoing request, the effect can fan out to downstream services that never received the original malicious request. This vulnerability is fixed in 1.62.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-45292"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rcgg-9c38-7xpx</id>
    <title>GHSA-rcgg-9c38-7xpx — OpenTelemetry Java SDK has Unbounded Memory Allocation in W3C Baggage Propagation</title>
    <updated>2026-10-02T16:30:58.093679+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Maven: io.opentelemetry:opentelemetry-api, Maven: io.opentelemetry:opentelemetry-extension-trace-propagators</p>
<p>## Overview</p>
<p>A vulnerability affects the baggage propagation implementation in
`opentelemetry-api` and `opentelemetry-extension-trace-propagators`. Parsing oversized baggage
causes unbounded memory allocation and CPU consumption. Because baggage is automatically
re-injected into every outgoing request, the effect can fan out to downstream services that
never received the original malicious request.</p>
<p>## Technical Details</p>
<p>- `W3CBaggagePropagator` did not enforce any limit on the total size or entry count of the
  `baggage` header. The parser iterated character-by-character through the entire value
  regardless of length.
- `JaegerPropagator` and `OtTracePropagator` had the same gap in their respective baggage
  extraction paths.
- The W3C Baggage specification recommends a maximum of 8,192 bytes and 180 entries; none of
  these limits were enforced.</p>
<p>## Impact</p>
<p>The practical availability impact for most deployments is limited. Every major Java HTTP server
enforces its own header size limit (Tomcat, Jetty, Netty, Vert.x, and gRPC-Java all default to
8 KiB), constraining what an external attacker can deliver before the application is reached.
The risk is higher when transport-layer limits are absent — e.g., a compromised internal service
communicating over a non-HTTP or custom transport.</p>
<p>## Remediation</p>
<p>Update to version 1.62.0 or later ([#8380](https://github.com/open-telemetry/opentelemetry-java/pull/8380)).
The fix enforces limits consistent with the W3C Baggage specificati…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rcgg-9c38-7xpx"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0326</id>
    <title>NCSC-2026-0326 — Kwetsbaarheden verholpen in Keycloak</title>
    <updated>2026-10-02T16:30:58.093727+00:00</updated>
    <content>NCSC-2026-0326</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0326"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:28573</id>
    <title>RHSA-2026:28573 — Red Hat Security Advisory: Red Hat Offline Knowledge Portal security and content update</title>
    <updated>2026-10-02T16:30:58.093754+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>org.eclipse.jetty.ee10/jetty-ee10: early return from the JASPIAuthenticator class without clearing ThreadLocal variables netty-handler: netty-handler: IPv6 subnet rule bypass due to incorrect masking operation opentelemetry-java: opentelemetry-api: opentelemetry-extension-trace-propagators: OpenTelemetry Java: Denial of Service due to unbounded memory allocation when parsing oversized baggage netty-handler: Netty: Denial of Service due to eager buffer allocation in TLS handshake netty-handler: Netty: Improper trust manager handling leads to hostname verification bypass</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:28573"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2242</id>
    <title>WID-SEC-W-2026-2242 — IBM Operational Decision Manager: Mehrere Schwachstellen</title>
    <updated>2026-10-02T16:30:58.093778+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in IBM Operational Decision Manager ausnutzen, um Sicherheitsbeschränkungen zu umgehen, um einen Denial of Service zu verursachen und Code auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2242"/>
  </entry>
</feed>
