<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T23:57:04.710028+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-53265</id>
    <title>BELL-CVE-2026-53265</title>
    <updated>2026-10-02T23:57:05.678813+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-53265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0812</id>
    <title>certfr-2026-avi-0812 — De multiples vulnérabilités ont été découvertes dans Microsoft Azure Linux. Elles permettent à un attaquant de provoque…</title>
    <updated>2026-10-02T23:57:05.678891+00:00</updated>
    <content>certfr-2026-avi-0812</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0812"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-348223</id>
    <title>EUVD-2026-348223</title>
    <updated>2026-10-02T23:57:05.678915+00:00</updated>
    <content>EUVD-2026-348223</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-348223"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-53265</id>
    <title>fkie_cve-2026-53265</title>
    <updated>2026-10-02T23:57:05.678929+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>dm cache policy smq: check allocation under invalidate lock</p>
<p>commit 2d1f7b65f5de ("dm cache policy smq: fix missing locks in
invalidating cache blocks") added mq-&gt;lock around the destructive part of
smq_invalidate_mapping(), but left the e-&gt;allocated check outside the
critical section.</p>
<p>That leaves a check-then-act race. Two concurrent invalidators can both
observe e-&gt;allocated as true before either of them takes mq-&gt;lock. The
first invalidator that acquires the lock removes the entry from the
queues and hash table and then calls free_entry(), which clears
e-&gt;allocated and puts the entry back on the free list. The second
invalidator can then acquire mq-&gt;lock and continue with the stale result
of the unlocked check.</p>
<p>This can corrupt the SMQ queues or hash table by deleting an entry that
is no longer on those structures. It can also hit the allocation check in
free_entry() when the same entry is freed again.</p>
<p>Move the allocation check under mq-&gt;lock so the predicate and the
destructive operations are serialized by the same lock.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-53265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-257g-7vrp-j9f8</id>
    <title>GHSA-257g-7vrp-j9f8</title>
    <updated>2026-10-02T23:57:05.678970+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>dm cache policy smq: check allocation under invalidate lock</p>
<p>commit 2d1f7b65f5de ("dm cache policy smq: fix missing locks in
invalidating cache blocks") added mq-&gt;lock around the destructive part of
smq_invalidate_mapping(), but left the e-&gt;allocated check outside the
critical section.</p>
<p>That leaves a check-then-act race. Two concurrent invalidators can both
observe e-&gt;allocated as true before either of them takes mq-&gt;lock. The
first invalidator that acquires the lock removes the entry from the
queues and hash table and then calls free_entry(), which clears
e-&gt;allocated and puts the entry back on the free list. The second
invalidator can then acquire mq-&gt;lock and continue with the stale result
of the unlocked check.</p>
<p>This can corrupt the SMQ queues or hash table by deleting an entry that
is no longer on those structures. It can also hit the allocation check in
free_entry() when the same entry is freed again.</p>
<p>Move the allocation check under mq-&gt;lock so the predicate and the
destructive operations are serialized by the same lock.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-257g-7vrp-j9f8"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-53265</id>
    <title>msrc_CVE-2026-53265 — dm cache policy smq: check allocation under invalidate lock</title>
    <updated>2026-10-02T23:57:05.678997+00:00</updated>
    <content>msrc_CVE-2026-53265</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-53265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1</id>
    <title>openSUSE-SU-2026:21555-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-02T23:57:05.679015+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:21555-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:23066-1</id>
    <title>SUSE-SU-2026:23066-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-02T23:57:05.679540+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:23066-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-53265</id>
    <title>UBUNTU-CVE-2026-53265</title>
    <updated>2026-10-02T23:57:05.680024+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 175 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: dm cache policy smq: check allocation under invalidate lock commit 2d1f7b65f5de ("dm cache policy smq: fix missing locks in invalidating cache blocks") added mq-&gt;lock around the destructive part of smq_invalidate_mapping(), but left the e-&gt;allocated check outside the critical section. That leaves a check-then-act race. Two concurrent invalidators can both observe e-&gt;allocated as true before either of them takes mq-&gt;lock. The first invalidator that acquires the lock removes the entry from the queues and hash table and then calls free_entry(), which clears e-&gt;allocated and puts the entry back on the free list. The second invalidator can then acquire mq-&gt;lock and continue with the stale result of the unlocked check. This can corrupt the SMQ queues or hash table by deleting an entry that is no longer on those structures. It can also hit the allocation check in free_entry() when the same entry is freed again. Move the allocation check under mq-&gt;lock so the predicate and the destructive operations are serialized by the same lock.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-53265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2077</id>
    <title>WID-SEC-W-2026-2077 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-02T23:57:05.680242+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um Sicherheitsvorkehrungen zu umgehen, einen Denial-of-Service-Zustand herbeizuführen und weitere, nicht näher spezifizierte Auswirkungen zu erzielen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2077"/>
  </entry>
</feed>
