<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T13:38:54.695657+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-13807</id>
    <title>bdu:2026-13807</title>
    <updated>2026-10-02T13:38:54.995760+00:00</updated>
    <content>bdu:2026-13807</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-13807"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-45841</id>
    <title>BELL-CVE-2026-45841</title>
    <updated>2026-10-02T13:38:54.995825+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-45841"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731</id>
    <title>certfr-2026-avi-0731 — De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-02T13:38:54.995860+00:00</updated>
    <content>certfr-2026-avi-0731</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-364806</id>
    <title>EUVD-2026-364806</title>
    <updated>2026-10-02T13:38:54.995877+00:00</updated>
    <content>EUVD-2026-364806</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-364806"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-45841</id>
    <title>fkie_cve-2026-45841</title>
    <updated>2026-10-02T13:38:54.995890+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO</p>
<p>nf_osf_match_one() computes ctx-&gt;window % f-&gt;wss.val in the
OSF_WSS_MODULO branch with no guard for f-&gt;wss.val == 0. A
CAP_NET_ADMIN user can add such a fingerprint via nfnetlink; a
subsequent matching TCP SYN divides by zero and panics the kernel.</p>
<p>Reject the bogus fingerprint in nfnl_osf_add_callback() above the
per-option for-loop. f-&gt;wss is per-fingerprint, not per-option, so
the check must run regardless of f-&gt;opt_num (including 0). Also
reject wss.wc &gt;= OSF_WSS_MAX; nf_osf_match_one() already treats that
as "should not happen".</p>
<p>Crash:
 Oops: divide error: 0000 [#1] SMP KASAN NOPTI
 RIP: 0010:nf_osf_match_one (net/netfilter/nfnetlink_osf.c:98)
 Call Trace:
 &lt;IRQ&gt;
  nf_osf_match (net/netfilter/nfnetlink_osf.c:220)
  xt_osf_match_packet (net/netfilter/xt_osf.c:32)
  ipt_do_table (net/ipv4/netfilter/ip_tables.c:348)
  nf_hook_slow (net/netfilter/core.c:622)
  ip_local_deliver (net/ipv4/ip_input.c:265)
  ip_rcv (include/linux/skbuff.h:1162)
  __netif_receive_skb_one_core (net/core/dev.c:6181)
  process_backlog (net/core/dev.c:6642)
  __napi_poll (net/core/dev.c:7710)
  net_rx_action (net/core/dev.c:7945)
  handle_softirqs (kernel/softirq.c:622)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-45841"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w9m2-286p-3583</id>
    <title>GHSA-w9m2-286p-3583</title>
    <updated>2026-10-02T13:38:54.995928+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO</p>
<p>nf_osf_match_one() computes ctx-&gt;window % f-&gt;wss.val in the
OSF_WSS_MODULO branch with no guard for f-&gt;wss.val == 0. A
CAP_NET_ADMIN user can add such a fingerprint via nfnetlink; a
subsequent matching TCP SYN divides by zero and panics the kernel.</p>
<p>Reject the bogus fingerprint in nfnl_osf_add_callback() above the
per-option for-loop. f-&gt;wss is per-fingerprint, not per-option, so
the check must run regardless of f-&gt;opt_num (including 0). Also
reject wss.wc &gt;= OSF_WSS_MAX; nf_osf_match_one() already treats that
as "should not happen".</p>
<p>Crash:
 Oops: divide error: 0000 [#1] SMP KASAN NOPTI
 RIP: 0010:nf_osf_match_one (net/netfilter/nfnetlink_osf.c:98)
 Call Trace:
 &lt;IRQ&gt;
  nf_osf_match (net/netfilter/nfnetlink_osf.c:220)
  xt_osf_match_packet (net/netfilter/xt_osf.c:32)
  ipt_do_table (net/ipv4/netfilter/ip_tables.c:348)
  nf_hook_slow (net/netfilter/core.c:622)
  ip_local_deliver (net/ipv4/ip_input.c:265)
  ip_rcv (include/linux/skbuff.h:1162)
  __netif_receive_skb_one_core (net/core/dev.c:6181)
  process_backlog (net/core/dev.c:6642)
  __napi_poll (net/core/dev.c:7710)
  net_rx_action (net/core/dev.c:7945)
  handle_softirqs (kernel/softirq.c:622)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w9m2-286p-3583"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-45841</id>
    <title>msrc_CVE-2026-45841 — netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO</title>
    <updated>2026-10-02T13:38:54.995956+00:00</updated>
    <content>msrc_CVE-2026-45841</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-45841"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10954-1</id>
    <title>openSUSE-SU-2026:10954-1 — kernel-devel-7.0.11-1.1 on GA media</title>
    <updated>2026-10-02T13:38:54.995973+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel-devel-7.0.11-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:10954-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-019113</id>
    <title>SSA-019113 — SSA-019113: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6</title>
    <updated>2026-10-02T13:38:54.996133+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).</p>
<p>Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-019113"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:22433-1</id>
    <title>SUSE-SU-2026:22433-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-02T13:38:54.996389+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:22433-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45841</id>
    <title>UBUNTU-CVE-2026-45841</title>
    <updated>2026-10-02T13:38:54.996488+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 253 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO nf_osf_match_one() computes ctx-&gt;window % f-&gt;wss.val in the OSF_WSS_MODULO branch with no guard for f-&gt;wss.val == 0. A CAP_NET_ADMIN user can add such a fingerprint via nfnetlink; a subsequent matching TCP SYN divides by zero and panics the kernel. Reject the bogus fingerprint in nfnl_osf_add_callback() above the per-option for-loop. f-&gt;wss is per-fingerprint, not per-option, so the check must run regardless of f-&gt;opt_num (including 0). Also reject wss.wc &gt;= OSF_WSS_MAX; nf_osf_match_one() already treats that as "should not happen". Crash:  Oops: divide error: 0000 [#1] SMP KASAN NOPTI  RIP: 0010:nf_osf_match_one (net/netfilter/nfnetlink_osf.c:98)  Call Trace:  &lt;IRQ&gt;   nf_osf_match (net/netfilter/nfnetlink_osf.c:220)   xt_osf_match_packet (net/netfilter/xt_osf.c:32)   ipt_do_table (net/ipv4/netfilter/ip_tables.c:348)   nf_hook_slow (net/netfilter/core.c:622)   ip_local_deliver (net/ipv4/ip_input.c:265)   ip_rcv (include/linux/skbuff.h:1162)   __netif_receive_skb_one_core (net/core/dev.c:6181)   process_backlog (net/core/dev.c:6642)   __napi_poll (net/core/dev.c:7710)   net_rx_action (net/core/dev.c:7945)   handle_softirqs (kernel/softirq.c:622)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45841"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1691</id>
    <title>WID-SEC-W-2026-1691 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-02T13:38:54.996775+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Zustand oder andere Auswirkungen herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1691"/>
  </entry>
</feed>
