<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T05:03:39.706946+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-13735</id>
    <title>bdu:2026-13735</title>
    <updated>2026-10-03T05:03:40.517392+00:00</updated>
    <content>bdu:2026-13735</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-13735"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-46245</id>
    <title>BELL-CVE-2026-46245</title>
    <updated>2026-10-03T05:03:40.517470+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-46245"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1029</id>
    <title>certfr-2026-avi-1029 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
    <updated>2026-10-03T05:03:40.517511+00:00</updated>
    <content>certfr-2026-avi-1029</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-1029"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-324414</id>
    <title>EUVD-2026-324414</title>
    <updated>2026-10-03T05:03:40.517530+00:00</updated>
    <content>EUVD-2026-324414</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-324414"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-46245</id>
    <title>fkie_cve-2026-46245</title>
    <updated>2026-10-03T05:03:40.517544+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>drm/amd/display: Fix dc_link NULL handling in HPD init</p>
<p>amdgpu_dm_hpd_init() may see connectors without a valid dc_link.</p>
<p>The code already checks dc_link for the polling decision, but later
unconditionally dereferences it when setting up HPD interrupts.</p>
<p>Assign dc_link early and skip connectors where it is NULL.</p>
<p>Fixes the below:
drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c:940 amdgpu_dm_hpd_init()
error: we previously assumed 'dc_link' could be null (see line 931)</p>
<p>drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c
    923                 /*
    924                  * Analog connectors may be hot-plugged unlike other connector
    925                  * types that don't support HPD. Only poll analog connectors.
    926                  */
    927                 use_polling |=
    928                         amdgpu_dm_connector-&gt;dc_link &amp;&amp;
                                ^^^^^^^^^^^^^^^^^^^^^^^^^^^^ The patch adds this NULL check but hopefully it can be removed</p>
<p>929                         dc_connector_supports_analog(amdgpu_dm_connector-&gt;dc_link-&gt;link_id.id);
    930
    931                 dc_link = amdgpu_dm_connector-&gt;dc_link;</p>
<p>dc_link assigned here.</p>
<p>932
    933                 /*
    934                  * Get a base driver irq reference for hpd ints for the lifetime
    935                  * of dm. Note that only hpd interrupt types are registered with
    93…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-46245"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-gc8h-w3qg-mpcq</id>
    <title>GHSA-gc8h-w3qg-mpcq</title>
    <updated>2026-10-03T05:03:40.517596+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>drm/amd/display: Fix dc_link NULL handling in HPD init</p>
<p>amdgpu_dm_hpd_init() may see connectors without a valid dc_link.</p>
<p>The code already checks dc_link for the polling decision, but later
unconditionally dereferences it when setting up HPD interrupts.</p>
<p>Assign dc_link early and skip connectors where it is NULL.</p>
<p>Fixes the below:
drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c:940 amdgpu_dm_hpd_init()
error: we previously assumed 'dc_link' could be null (see line 931)</p>
<p>drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c
    923                 /*
    924                  * Analog connectors may be hot-plugged unlike other connector
    925                  * types that don't support HPD. Only poll analog connectors.
    926                  */
    927                 use_polling |=
    928                         amdgpu_dm_connector-&gt;dc_link &amp;&amp;
                                ^^^^^^^^^^^^^^^^^^^^^^^^^^^^ The patch adds this NULL check but hopefully it can be removed</p>
<p>929                         dc_connector_supports_analog(amdgpu_dm_connector-&gt;dc_link-&gt;link_id.id);
    930
    931                 dc_link = amdgpu_dm_connector-&gt;dc_link;</p>
<p>dc_link assigned here.</p>
<p>932
    933                 /*
    934                  * Get a base driver irq reference for hpd ints for the lifetime
    935                  * of dm. Note that only hpd interrupt types are registered with
    93…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-gc8h-w3qg-mpcq"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-46245</id>
    <title>msrc_CVE-2026-46245 — drm/amd/display: Fix dc_link NULL handling in HPD init</title>
    <updated>2026-10-03T05:03:40.517634+00:00</updated>
    <content>msrc_CVE-2026-46245</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-46245"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-2675</id>
    <title>OESA-2026-2675 — kernel security update</title>
    <updated>2026-10-03T05:03:40.517653+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP1: kernel</p>
<p>The Linux Kernel, the operating system core itself.

Security Fix(es):</p>
<p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>drm/i915/gt: Fix timeline left held on VMA alloc error</p>
<p>The following error has been reported sporadically by CI when a test
unbinds the i915 driver on a ring submission platform:</p>
<p>&amp;lt;4&amp;gt; [239.330153] ------------[ cut here ]------------
&amp;lt;4&amp;gt; [239.330166] i915 0000:00:02.0: [drm] drm_WARN_ON(dev_priv-&amp;gt;mm.shrink_count)
&amp;lt;4&amp;gt; [239.330196] WARNING: CPU: 1 PID: 18570 at drivers/gpu/drm/i915/i915_gem.c:1309 i915_gem_cleanup_early+0x13e/0x150 [i915]
...
&amp;lt;4&amp;gt; [239.330640] RIP: 0010:i915_gem_cleanup_early+0x13e/0x150 [i915]
...
&amp;lt;4&amp;gt; [239.330942] Call Trace:
&amp;lt;4&amp;gt; [239.330944]  &amp;lt;TASK&amp;gt;
&amp;lt;4&amp;gt; [239.330949]  i915_driver_late_release+0x2b/0xa0 [i915]
&amp;lt;4&amp;gt; [239.331202]  i915_driver_release+0x86/0xa0 [i915]
&amp;lt;4&amp;gt; [239.331482]  devm_drm_dev_init_release+0x61/0x90
&amp;lt;4&amp;gt; [239.331494]  devm_action_release+0x15/0x30
&amp;lt;4&amp;gt; [239.331504]  release_nodes+0x3d/0x120
&amp;lt;4&amp;gt; [239.331517]  devres_release_all+0x96/0xd0
&amp;lt;4&amp;gt; [239.331533]  device_unbind_cleanup+0x12/0x80
&amp;lt;4&amp;gt; [239.331543]  device_release_driver_internal+0x23a/0x280
&amp;lt;4&amp;gt; [239.331550]  ? bus_find_device+0xa5/0xe0
&amp;lt;4&amp;gt; [239.331563]  device_driver_detach+0x14/0x20
...
&amp;lt;4&amp;gt; [357.719679] ---[ end trace 0000000000000000 ]---</p>
<p>If the test also unloads the i915 module then that&amp;apos;s followed with:</p>
<p>&amp;lt;3&amp;gt; [357.787478] ===…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-2675"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1</id>
    <title>openSUSE-SU-2026:21555-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T05:03:40.517931+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:23066-1</id>
    <title>SUSE-SU-2026:23066-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T05:03:40.518493+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:23066-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-46245</id>
    <title>UBUNTU-CVE-2026-46245</title>
    <updated>2026-10-03T05:03:40.519053+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 226 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix dc_link NULL handling in HPD init amdgpu_dm_hpd_init() may see connectors without a valid dc_link. The code already checks dc_link for the polling decision, but later unconditionally dereferences it when setting up HPD interrupts. Assign dc_link early and skip connectors where it is NULL. Fixes the below: drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c:940 amdgpu_dm_hpd_init() error: we previously assumed 'dc_link' could be null (see line 931) drivers/gpu/drm/amd/amdgpu/../display/amdgpu_dm/amdgpu_dm_irq.c     923                 /*     924                  * Analog connectors may be hot-plugged unlike other connector     925                  * types that don't support HPD. Only poll analog connectors.     926                  */     927                 use_polling |=     928                         amdgpu_dm_connector-&gt;dc_link &amp;&amp;                                 ^^^^^^^^^^^^^^^^^^^^^^^^^^^^ The patch adds this NULL check but hopefully it can be removed     929 dc_connector_supports_analog(amdgpu_dm_connector-&gt;dc_link-&gt;link_id.id);     930     931                 dc_link = amdgpu_dm_connector-&gt;dc_link; dc_link assigned here.     932     933                 /*     934                  * Get a base driver irq reference for hpd ints for the lifetime     935                  * of dm. Note that only hpd interrupt types are registered with     936                  * base driver;…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-46245"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1802</id>
    <title>WID-SEC-W-2026-1802 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T05:03:40.519559+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen oder nicht bekannte Auswirkungen zu erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1802"/>
  </entry>
</feed>
