<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T12:06:59.687030+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:54272</id>
    <title>ALSA-2026:54272 — Important: abrt security update</title>
    <updated>2026-10-03T12:06:59.699754+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: abrt, AlmaLinux:8: abrt-addon-ccpp, AlmaLinux:8: abrt-addon-coredump-helper, AlmaLinux:8: abrt-addon-kerneloops, AlmaLinux:8: abrt-addon-pstoreoops, AlmaLinux:8: abrt-addon-vmcore, AlmaLinux:8: abrt-addon-xorg, AlmaLinux:8: abrt-cli, AlmaLinux:8: abrt-cli-ng, AlmaLinux:8: abrt-console-notification and 12 more</p>
<p>The Automatic Bug Reporting Tool (ABRT) recognizes defects in applications and creates bug reports that help maintainers fix the defects. ABRT uses a plug-in system to extend its functionality.</p>
<p>Security Fix(es):</p>
<p>* abrt: TOCTOU race condition in abrt-dbus SetElement allows arbitrary file writes to dump directories (CVE-2026-54228)
  * abrt: ChownProblemDir succeeds during active post-create event processing due to inadequate locking (CVE-2026-54229)
  * abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites (CVE-2026-54230)
  * abrt: unsanitized systemd journal content written to dump directory files enables content injection (CVE-2026-54231)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:54272"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-372742</id>
    <title>EUVD-2026-372742</title>
    <updated>2026-10-03T12:06:59.699855+00:00</updated>
    <content>EUVD-2026-372742</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-372742"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-54231</id>
    <title>fkie_cve-2026-54231</title>
    <updated>2026-10-03T12:06:59.699872+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A content injection vulnerability was found in the ABRT post-create event handler scripts in libreport. The event script queries the systemd journal for log entries matching the crashed process and writes the results to files in the dump directory without sanitizing embedded control characters. A local user can inject arbitrary content into the journal output by embedding newline characters in syslog messages, controlling the content that root writes to dump directory files.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-54231"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-p464-2mqm-5h37</id>
    <title>GHSA-p464-2mqm-5h37</title>
    <updated>2026-10-03T12:06:59.699898+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A content injection vulnerability was found in the ABRT post-create event handler scripts in libreport. The event script queries the systemd journal for log entries matching the crashed process and writes the results to files in the dump directory without sanitizing embedded control characters. A local user can inject arbitrary content into the journal output by embedding newline characters in syslog messages, controlling the content that root writes to dump directory files.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-p464-2mqm-5h37"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:54272</id>
    <title>RHSA-2026:54272 — Red Hat Security Advisory: abrt security update</title>
    <updated>2026-10-03T12:06:59.699915+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>abrt: TOCTOU race condition in abrt-dbus SetElement allows arbitrary file writes to dump directories abrt: ChownProblemDir succeeds during active post-create event processing due to inadequate locking abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites abrt: unsanitized systemd journal content written to dump directory files enables content injection</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:54272"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:69115</id>
    <title>RHSA-2026:69115 — Red Hat Security Advisory: abrt security update</title>
    <updated>2026-10-03T12:06:59.699941+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites abrt: unsanitized systemd journal content written to dump directory files enables content injection</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:69115"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:54272</id>
    <title>RLSA-2026:54272 — Important: abrt security update</title>
    <updated>2026-10-03T12:06:59.699960+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:8: abrt</p>
<p>The Automatic Bug Reporting Tool (ABRT) recognizes defects in applications and creates bug reports that help maintainers fix the defects. ABRT uses a plug-in system to extend its functionality.</p>
<p>Security Fix(es):</p>
<p>* abrt: TOCTOU race condition in abrt-dbus SetElement allows arbitrary file writes to dump directories (CVE-2026-54228)</p>
<p>* abrt: ChownProblemDir succeeds during active post-create event processing due to inadequate locking (CVE-2026-54229)</p>
<p>* abrt: event handler scripts follow symlinks when writing output files, allowing arbitrary file overwrites (CVE-2026-54230)</p>
<p>* abrt: unsanitized systemd journal content written to dump directory files enables content injection (CVE-2026-54231)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:54272"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3470</id>
    <title>WID-SEC-W-2026-3470 — Red Hat Enterprise Linux (abrt): Mehrere Schwachstellen ermöglichen Manipulation von Dateien</title>
    <updated>2026-10-03T12:06:59.699987+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um Dateien zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3470"/>
  </entry>
</feed>
