<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T10:34:08.996243+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:72467</id>
    <title>ALSA-2026:72467 — Important: kernel-rt security update</title>
    <updated>2026-10-03T10:34:09.189650+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: kernel-rt, AlmaLinux:8: kernel-rt-core, AlmaLinux:8: kernel-rt-debug, AlmaLinux:8: kernel-rt-debug-core, AlmaLinux:8: kernel-rt-debug-devel, AlmaLinux:8: kernel-rt-debug-modules, AlmaLinux:8: kernel-rt-debug-modules-extra, AlmaLinux:8: kernel-rt-devel, AlmaLinux:8: kernel-rt-modules, AlmaLinux:8: kernel-rt-modules-extra</p>
<p>The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.</p>
<p>Security Fix(es):</p>
<p>* kernel: fbcon: Set fb_display[i]-&gt;mode to NULL when the mode is released (CVE-2025-40323)
  * kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942)
  * kernel: drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg (CVE-2026-46230)
  * kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing IB (CVE-2026-46204)
  * kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg (CVE-2026-46199)
  * kernel: arm64: tlb: Flush walk cache when unsharing PMD tables (CVE-2026-63875)
  * kernel: net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer (CVE-2026-64034)
  * kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556)
  * kernel: Linux kernel: libceph stack out-of-bounds write via crafted OSDMap (CVE-2026-68159)
  * kernel: libceph: refresh auth-&gt;authorizer_buf{,_len} after authorizer update (CVE-2026-68156)
  * kernel: Linux kernel (libceph): Denial of Service due to malformed monitor maps (CVE-2026-68155)
  * kernel: drm/amdgpu: Fix context pstate override handling (CVE-2026-68273)
  * kernel: perf: Reject exited events as group leaders (CVE-2026-74753)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:72467"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-45942</id>
    <title>BELL-CVE-2026-45942</title>
    <updated>2026-10-03T10:34:09.189768+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-45942"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0782</id>
    <title>certfr-2026-avi-0782 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T10:34:09.189802+00:00</updated>
    <content>certfr-2026-avi-0782</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0782"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-347965</id>
    <title>EUVD-2026-347965</title>
    <updated>2026-10-03T10:34:09.189823+00:00</updated>
    <content>EUVD-2026-347965</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-347965"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-45942</id>
    <title>fkie_cve-2026-45942</title>
    <updated>2026-10-03T10:34:09.189835+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ext4: fix e4b bitmap inconsistency reports</p>
<p>A bitmap inconsistency issue was observed during stress tests under
mixed huge-page workloads. Ext4 reported multiple e4b bitmap check
failures like:</p>
<p>ext4_mb_complex_scan_group:2508: group 350, 8179 free clusters as
per group info. But got 8192 blocks</p>
<p>Analysis and experimentation confirmed that the issue is caused by a
race condition between page migration and bitmap modification. Although
this timing window is extremely narrow, it is still hit in practice:</p>
<p>folio_lock                        ext4_mb_load_buddy
__migrate_folio
  check ref count
  folio_mc_copy                     __filemap_get_folio
                                      folio_try_get(folio)
                                  ......
                                  mb_mark_used
                                  ext4_mb_unload_buddy
  __folio_migrate_mapping
    folio_ref_freeze
folio_unlock</p>
<p>The root cause of this issue is that the fast path of load_buddy only
increments the folio's reference count, which is insufficient to prevent
concurrent folio migration. We observed that the folio migration process
acquires the folio lock. Therefore, we can determine whether to take the
fast path in load_buddy by checking the lock status. If the folio is
locked, we opt for the slow path (which acquires the lock) to close this
concurrency window.</p>
<p>Additionally, this change addresses the following issues:</p>
<p>When…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-45942"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w5q7-xvcj-p6c8</id>
    <title>GHSA-w5q7-xvcj-p6c8</title>
    <updated>2026-10-03T10:34:09.189885+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>ext4: fix e4b bitmap inconsistency reports</p>
<p>A bitmap inconsistency issue was observed during stress tests under
mixed huge-page workloads. Ext4 reported multiple e4b bitmap check
failures like:</p>
<p>ext4_mb_complex_scan_group:2508: group 350, 8179 free clusters as
per group info. But got 8192 blocks</p>
<p>Analysis and experimentation confirmed that the issue is caused by a
race condition between page migration and bitmap modification. Although
this timing window is extremely narrow, it is still hit in practice:</p>
<p>folio_lock                        ext4_mb_load_buddy
__migrate_folio
  check ref count
  folio_mc_copy                     __filemap_get_folio
                                      folio_try_get(folio)
                                  ......
                                  mb_mark_used
                                  ext4_mb_unload_buddy
  __folio_migrate_mapping
    folio_ref_freeze
folio_unlock</p>
<p>The root cause of this issue is that the fast path of load_buddy only
increments the folio's reference count, which is insufficient to prevent
concurrent folio migration. We observed that the folio migration process
acquires the folio lock. Therefore, we can determine whether to take the
fast path in load_buddy by checking the lock status. If the folio is
locked, we opt for the slow path (which acquires the lock) to close this
concurrency window.</p>
<p>Additionally, this change addresses the following issues:</p>
<p>When…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w5q7-xvcj-p6c8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-45942</id>
    <title>msrc_CVE-2026-45942 — ext4: fix e4b bitmap inconsistency reports</title>
    <updated>2026-10-03T10:34:09.189922+00:00</updated>
    <content>msrc_CVE-2026-45942</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-45942"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-2675</id>
    <title>OESA-2026-2675 — kernel security update</title>
    <updated>2026-10-03T10:34:09.189941+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>drm/i915/gt: Fix timeline left held on VMA alloc error</p>
<p>The following error has been reported sporadically by CI when a test
unbinds the i915 driver on a ring submission platform:</p>
<p>&amp;lt;4&amp;gt; [239.330153] ------------[ cut here ]------------
&amp;lt;4&amp;gt; [239.330166] i915 0000:00:02.0: [drm] drm_WARN_ON(dev_priv-&amp;gt;mm.shrink_count)
&amp;lt;4&amp;gt; [239.330196] WARNING: CPU: 1 PID: 18570 at drivers/gpu/drm/i915/i915_gem.c:1309 i915_gem_cleanup_early+0x13e/0x150 [i915]
...
&amp;lt;4&amp;gt; [239.330640] RIP: 0010:i915_gem_cleanup_early+0x13e/0x150 [i915]
...
&amp;lt;4&amp;gt; [239.330942] Call Trace:
&amp;lt;4&amp;gt; [239.330944]  &amp;lt;TASK&amp;gt;
&amp;lt;4&amp;gt; [239.330949]  i915_driver_late_release+0x2b/0xa0 [i915]
&amp;lt;4&amp;gt; [239.331202]  i915_driver_release+0x86/0xa0 [i915]
&amp;lt;4&amp;gt; [239.331482]  devm_drm_dev_init_release+0x61/0x90
&amp;lt;4&amp;gt; [239.331494]  devm_action_release+0x15/0x30
&amp;lt;4&amp;gt; [239.331504]  release_nodes+0x3d/0x120
&amp;lt;4&amp;gt; [239.331517]  devres_release_all+0x96/0xd0
&amp;lt;4&amp;gt; [239.331533]  device_unbind_cleanup+0x12/0x80
&amp;lt;4&amp;gt; [239.331543]  device_release_driver_internal+0x23a/0x280
&amp;lt;4&amp;gt; [239.331550]  ? bus_find_device+0xa5/0xe0
&amp;lt;4&amp;gt; [239.331563]  device_driver_detach+0x14/0x20
...
&amp;lt;4&amp;gt; [357.719679] ---[ end trace 0000000000000000 ]---</p>
<p>If the test also unloads the i915 module then that&amp;apos;s followed with:</p>
<p>&amp;lt;3&amp;gt; [357.787478] ===…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-2675"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20965-1</id>
    <title>openSUSE-SU-2026:20965-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T10:34:09.190215+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:20965-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:72467</id>
    <title>RHSA-2026:72467 — Red Hat Security Advisory: kernel-rt security update</title>
    <updated>2026-10-03T10:34:09.190275+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: fbcon: Set fb_display[i]-&gt;mode to NULL when the mode is released kernel: ext4: fix e4b bitmap inconsistency reports kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing IB kernel: drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg kernel: arm64: tlb: Flush walk cache when unsharing PMD tables kernel: net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer kernel: perf/core: Detach event groups during remove_on_exec kernel: Linux kernel (libceph): Denial of Service due to malformed monitor maps kernel: libceph: refresh auth-&gt;authorizer_buf{,_len} after authorizer update kernel: Linux kernel: libceph stack out-of-bounds write via crafted OSDMap kernel: drm/amdgpu: Fix context pstate override handling kernel: perf: Reject exited events as group leaders</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:72467"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:72467</id>
    <title>RLSA-2026:72467 — Important: kernel-rt security update</title>
    <updated>2026-10-03T10:34:09.190320+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:8: kernel-rt</p>
<p>The kernel-rt packages provide the Real Time Linux Kernel, which enables fine-tuning for systems with extremely high determinism requirements.</p>
<p>Security Fix(es):</p>
<p>* kernel: fbcon: Set fb_display[i]-&gt;mode to NULL when the mode is released (CVE-2025-40323)</p>
<p>* kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942)</p>
<p>* kernel: drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg (CVE-2026-46230)</p>
<p>* kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing IB (CVE-2026-46204)</p>
<p>* kernel: drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg (CVE-2026-46199)</p>
<p>* kernel: arm64: tlb: Flush walk cache when unsharing PMD tables (CVE-2026-63875)</p>
<p>* kernel: net: mana: Fix TOCTOU double-fetch of hwc_msg_id from DMA buffer (CVE-2026-64034)</p>
<p>* kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556)</p>
<p>* kernel: Linux kernel: libceph stack out-of-bounds write via crafted OSDMap (CVE-2026-68159)</p>
<p>* kernel: libceph: refresh auth-&gt;authorizer_buf{,_len} after authorizer update (CVE-2026-68156)</p>
<p>* kernel: Linux kernel (libceph): Denial of Service due to malformed monitor maps (CVE-2026-68155)</p>
<p>* kernel: drm/amdgpu: Fix context pstate override handling (CVE-2026-68273)</p>
<p>* kernel: perf: Reject exited events as group leaders (CVE-2026-74753)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:72467"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:22099-1</id>
    <title>SUSE-SU-2026:22099-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T10:34:09.190358+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:22099-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45942</id>
    <title>UBUNTU-CVE-2026-45942</title>
    <updated>2026-10-03T10:34:09.190410+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 232 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: ext4: fix e4b bitmap inconsistency reports A bitmap inconsistency issue was observed during stress tests under mixed huge-page workloads. Ext4 reported multiple e4b bitmap check failures like: ext4_mb_complex_scan_group:2508: group 350, 8179 free clusters as per group info. But got 8192 blocks Analysis and experimentation confirmed that the issue is caused by a race condition between page migration and bitmap modification. Although this timing window is extremely narrow, it is still hit in practice: folio_lock                        ext4_mb_load_buddy __migrate_folio   check ref count   folio_mc_copy                     __filemap_get_folio                                       folio_try_get(folio)                                   ......                                   mb_mark_used                                   ext4_mb_unload_buddy   __folio_migrate_mapping     folio_ref_freeze folio_unlock The root cause of this issue is that the fast path of load_buddy only increments the folio's reference count, which is insufficient to prevent concurrent folio migration. We observed that the folio migration process acquires the folio lock. Therefore, we can determine whether to take the fast path in load_buddy by checking the lock status. If the folio is locked, we opt for the slow path (which acquires the lock) to close this concurrency window. Additionally, this change addresses the following issues: When the DOU…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-45942"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1700</id>
    <title>WID-SEC-W-2026-1700 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T10:34:09.190761+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder andere nicht näher spezifizierte Auswirkungen zu erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1700"/>
  </entry>
</feed>
