<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T06:40:37.256695+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:65334</id>
    <title>ALSA-2026:65334 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T06:40:38.496685+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:10: kernel, AlmaLinux:10: kernel-64k, AlmaLinux:10: kernel-64k-core, AlmaLinux:10: kernel-64k-debug, AlmaLinux:10: kernel-64k-debug-core, AlmaLinux:10: kernel-64k-debug-devel, AlmaLinux:10: kernel-64k-debug-devel-matched, AlmaLinux:10: kernel-64k-debug-modules, AlmaLinux:10: kernel-64k-debug-modules-core, AlmaLinux:10: kernel-64k-debug-modules-extra and 65 more</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CVE-2026-43133)
  * kernel: Bluetooth: SMP: force responder MITM requirements before building the pairing response (CVE-2026-43334)
  * kernel: Bluetooth: virtio_bt: clamp rx length before skb_put (CVE-2026-46123)
  * kernel: Bluetooth: serialize accept_q access (CVE-2026-52918)
  * kernel: net: pull headers in qdisc_pkt_len_segs_init() (CVE-2026-53091)
  * kernel: Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CVE-2026-53072)
  * kernel: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (CVE-2026-52947)
  * kernel: Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CVE-2026-53256)
  * kernel: wifi: nl80211: reject oversized EMA RNR lists (CVE-2026-53182)
  * kernel: Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CVE-2026-53209)
  * kernel: Bluetooth: RFCOMM: validate skb length in MCC handlers (CVE-2026-53254)
  * kernel: vfio/pci: Clean up DMABUFs before disabling function (CVE-2026-53322)
  * kernel: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CVE-2026-63975)
  * kernel: security/keys: fix missed RCU read section on lookup (CVE-2026-64015)
  * kernel: Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CVE-2026-63947)
  * kernel: Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sy…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:65334"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-14024</id>
    <title>bdu:2026-14024</title>
    <updated>2026-10-03T06:40:38.496919+00:00</updated>
    <content>bdu:2026-14024</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-14024"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-53182</id>
    <title>BELL-CVE-2026-53182</title>
    <updated>2026-10-03T06:40:38.496947+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-53182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0812</id>
    <title>certfr-2026-avi-0812 — De multiples vulnérabilités ont été découvertes dans Microsoft Azure Linux. Elles permettent à un attaquant de provoque…</title>
    <updated>2026-10-03T06:40:38.496979+00:00</updated>
    <content>certfr-2026-avi-0812</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0812"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-348181</id>
    <title>EUVD-2026-348181</title>
    <updated>2026-10-03T06:40:38.497005+00:00</updated>
    <content>EUVD-2026-348181</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-348181"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-53182</id>
    <title>fkie_cve-2026-53182</title>
    <updated>2026-10-03T06:40:38.497019+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>wifi: nl80211: reject oversized EMA RNR lists</p>
<p>nl80211_parse_rnr_elems() stores the parsed element count in a
u8-backed cfg80211_rnr_elems::cnt field and uses that count to size
the flexible array allocation.</p>
<p>Reject nested NL80211_ATTR_EMA_RNR_ELEMS input once the count reaches
255, before incrementing it again. This keeps the parser aligned with
the data structure it fills and matches the existing bound check used
by nl80211_parse_mbssid_elems().</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-53182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-q6qm-26ch-2w94</id>
    <title>GHSA-q6qm-26ch-2w94</title>
    <updated>2026-10-03T06:40:38.497047+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>wifi: nl80211: reject oversized EMA RNR lists</p>
<p>nl80211_parse_rnr_elems() stores the parsed element count in a
u8-backed cfg80211_rnr_elems::cnt field and uses that count to size
the flexible array allocation.</p>
<p>Reject nested NL80211_ATTR_EMA_RNR_ELEMS input once the count reaches
255, before incrementing it again. This keeps the parser aligned with
the data structure it fills and matches the existing bound check used
by nl80211_parse_mbssid_elems().</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-q6qm-26ch-2w94"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-53182</id>
    <title>msrc_CVE-2026-53182 — wifi: nl80211: reject oversized EMA RNR lists</title>
    <updated>2026-10-03T06:40:38.497066+00:00</updated>
    <content>msrc_CVE-2026-53182</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-53182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1</id>
    <title>openSUSE-SU-2026:21555-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T06:40:38.497083+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:67469</id>
    <title>RHSA-2026:67469 — Red Hat Security Advisory: kernel-rt security update</title>
    <updated>2026-10-03T06:40:38.497617+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: EDAC/bluefield: Fix potential integer overflow kernel: wifi: mac80211: Discard Beacon frames to non-broadcast address kernel: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation kernel: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove kernel: wifi: nl80211: reject oversized EMA RNR lists kernel: blk-cgroup: fix UAF in __blkcg_rstat_flush() kernel: scsi: scsi_transport_fc: Widen FPIN pname walker counter to u32 kernel: wifi: mac80211: capture fast-RX rate before mesh reuses skb-&gt;cb kernel: net: qrtr: restrict socket creation to the initial network namespace kernel: Linux kernel: ath9k Wi-Fi driver use-after-free vulnerability leading to system crash kernel: dm-verity: fix buffer overflow in FEC calculation kernel: scsi: libiscsi_tcp: Bound SCSI Response data segment to the connection buffer</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:67469"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:65334</id>
    <title>RLSA-2026:65334 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T06:40:38.497662+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:10: kernel</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: KVM: nSVM: Always use vmcb01 in VMLOAD/VMSAVE emulation (CVE-2026-43133)</p>
<p>* kernel: Bluetooth: SMP: force responder MITM requirements before building the pairing response (CVE-2026-43334)</p>
<p>* kernel: Bluetooth: virtio_bt: clamp rx length before skb_put (CVE-2026-46123)</p>
<p>* kernel: Bluetooth: serialize accept_q access (CVE-2026-52918)</p>
<p>* kernel: net: pull headers in qdisc_pkt_len_segs_init() (CVE-2026-53091)</p>
<p>* kernel: Bluetooth: fix locking in hci_conn_request_evt() with HCI_PROTO_DEFER (CVE-2026-53072)</p>
<p>* kernel: net: qrtr: fix refcount saturation and potential UAF in qrtr_port_remove (CVE-2026-52947)</p>
<p>* kernel: Bluetooth: RFCOMM: hold listener socket in rfcomm_connect_ind() (CVE-2026-53256)</p>
<p>* kernel: wifi: nl80211: reject oversized EMA RNR lists (CVE-2026-53182)</p>
<p>* kernel: Bluetooth: hci_sync: reject oversized Broadcast Announcement prepend (CVE-2026-53209)</p>
<p>* kernel: Bluetooth: RFCOMM: validate skb length in MCC handlers (CVE-2026-53254)</p>
<p>* kernel: vfio/pci: Clean up DMABUFs before disabling function (CVE-2026-53322)</p>
<p>* kernel: Bluetooth: L2CAP: Fix possible crash on l2cap_ecred_conn_rsp (CVE-2026-63975)</p>
<p>* kernel: security/keys: fix missed RCU read section on lookup (CVE-2026-64015)</p>
<p>* kernel: Bluetooth: HIDP: fix missing length checks in hidp_input_report() (CVE-2026-63947)</p>
<p>* kernel: Bluetooth: hci_sync: fix UAF in hci_le_create_cis_sync (CVE-2026-63944)…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:65334"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:22521-1</id>
    <title>SUSE-SU-2026:22521-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T06:40:38.497713+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:22521-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-53182</id>
    <title>UBUNTU-CVE-2026-53182</title>
    <updated>2026-10-03T06:40:38.497773+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 163 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject oversized EMA RNR lists nl80211_parse_rnr_elems() stores the parsed element count in a u8-backed cfg80211_rnr_elems::cnt field and uses that count to size the flexible array allocation. Reject nested NL80211_ATTR_EMA_RNR_ELEMS input once the count reaches 255, before incrementing it again. This keeps the parser aligned with the data structure it fills and matches the existing bound check used by nl80211_parse_mbssid_elems().</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-53182"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2077</id>
    <title>WID-SEC-W-2026-2077 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T06:40:38.497960+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um Sicherheitsvorkehrungen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen und weitere, nicht näher spezifizierte Auswirkungen zu erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2077"/>
  </entry>
</feed>
