<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T08:25:35.098265+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:57252</id>
    <title>ALSA-2026:57252 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T08:25:35.497429+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: kernel, AlmaLinux:9: kernel-64k, AlmaLinux:9: kernel-64k-core, AlmaLinux:9: kernel-64k-debug, AlmaLinux:9: kernel-64k-debug-core, AlmaLinux:9: kernel-64k-debug-devel, AlmaLinux:9: kernel-64k-debug-devel-matched, AlmaLinux:9: kernel-64k-debug-modules, AlmaLinux:9: kernel-64k-debug-modules-core, AlmaLinux:9: kernel-64k-debug-modules-extra and 64 more</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() (CVE-2026-43233)
  * kernel: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() (CVE-2026-43206)
  * kernel: drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 (CVE-2026-43237)
  * kernel: udf: fix partition descriptor append bookkeeping (CVE-2026-45991)
  * kernel: drm/amdkfd: Fix watch_id bounds checking in debug address watch v2 (CVE-2026-45878)
  * kernel: ip6_gre: Use cached t-&gt;net in ip6erspan_changelink() (CVE-2026-46120)
  * kernel: sched/psi: fix race between file release and pressure write (CVE-2026-52991)
  * kernel: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 (CVE-2026-53143)
  * kernel: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size (CVE-2026-53136)
  * kernel: mm/huge_memory: update file PMD counter before folio_put() (CVE-2026-53189)
  * kernel: drm/amd/display: Use krealloc_array() in dal_vector_reserve() (CVE-2026-53329)
  * kernel: drm/i915/gem: Fix phys BO pread/pwrite with offset (CVE-2026-53356)
  * kernel: drm/amdgpu: zero-initialize GART table on allocation (CVE-2026-53374)
  * kernel: drm/i915: Fix potential UAF in TTM object purge (CVE-2026-63884)
  * kernel: netfilter: synproxy: refresh tcphdr after skb_ensure_writable (CVE-2026-64007)
  * kernel: memfd: deny…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:57252"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-68343</id>
    <title>BELL-CVE-2026-68343</title>
    <updated>2026-10-03T08:25:35.497636+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-68343"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1069</id>
    <title>certfr-2026-avi-1069 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Elles permettent à un attaquant de p…</title>
    <updated>2026-10-03T08:25:35.497667+00:00</updated>
    <content>certfr-2026-avi-1069</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-1069"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-356233</id>
    <title>EUVD-2026-356233</title>
    <updated>2026-10-03T08:25:35.497687+00:00</updated>
    <content>EUVD-2026-356233</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-356233"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-68343</id>
    <title>fkie_cve-2026-68343</title>
    <updated>2026-10-03T08:25:35.497700+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>smb: client: validate DFS referral PathConsumed</p>
<p>parse_dfs_referrals() validates that the response contains the fixed
referral entry array and, on for-next, the per-referral string offsets.
However, the response also contains a PathConsumed value that is later
used for DFS path parsing.</p>
<p>If a malformed response provides a PathConsumed value larger than the
search name, later DFS parsing can advance beyond the end of the path.</p>
<p>Validate PathConsumed against the search name length before storing it in
the parsed referral.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-68343"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-jv66-q3cr-4688</id>
    <title>GHSA-jv66-q3cr-4688</title>
    <updated>2026-10-03T08:25:35.497730+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>smb: client: validate DFS referral PathConsumed</p>
<p>parse_dfs_referrals() validates that the response contains the fixed
referral entry array and, on for-next, the per-referral string offsets.
However, the response also contains a PathConsumed value that is later
used for DFS path parsing.</p>
<p>If a malformed response provides a PathConsumed value larger than the
search name, later DFS parsing can advance beyond the end of the path.</p>
<p>Validate PathConsumed against the search name length before storing it in
the parsed referral.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-jv66-q3cr-4688"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-68343</id>
    <title>msrc_CVE-2026-68343 — smb: client: validate DFS referral PathConsumed</title>
    <updated>2026-10-03T08:25:35.497749+00:00</updated>
    <content>msrc_CVE-2026-68343</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-68343"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:57252</id>
    <title>RHSA-2026:57252 — Red Hat Security Advisory: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T08:25:35.497767+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() kernel: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() kernel: drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 kernel: drm/amdkfd: Fix watch_id bounds checking in debug address watch v2 kernel: udf: fix partition descriptor append bookkeeping kernel: ip6_gre: Use cached t-&gt;net in ip6erspan_changelink() kernel: sched/psi: fix race between file release and pressure write kernel: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size kernel: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 kernel: mm/huge_memory: update file PMD counter before folio_put() kernel: drm/amd/display: Use krealloc_array() in dal_vector_reserve() kernel: drm/i915/gem: Fix phys BO pread/pwrite with offset kernel: drm/amdgpu: zero-initialize GART table on allocation kernel: drm/amdgpu: fix amdgpu_hmm_range_get_pages kernel: drm/i915: Fix potential UAF in TTM object purge kernel: scsi: target: iscsi: Fix CRC overread and double-free in iscsit_handle_text_cmd() kernel: memfd: deny writeable mappings when implying SEAL_WRITE kernel: netfilter: synproxy: refresh tcphdr after skb_ensure_writable kernel: net/smc: reject CHID-0 ACCEPT that matches an empty ism_dev slot kernel: drm/amd/display: Validate payload length and link_index in dc_process_dmub_aux_transfer_async kernel: smb: client: mask server-provided mode to 07777 in modefromsi…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:57252"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:60440</id>
    <title>RHSA-2026:60440 — Red Hat Security Advisory: OpenShift Container Platform 4.22.12 bug fix and security update</title>
    <updated>2026-10-03T08:25:35.497845+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>curl: curl: Insecure connection establishment due to TLS configuration mismatch curl: curl: Man-in-the-middle attack via SSH host key bypass bind: bind9: Incorrect acceptance of NSEC3 records bind9: bind: Potential wildcard CNAME RPZ policy bypass dracut: dracut: root code execution via unescaped error message written to sourced emergency hook script in die() unbound: Unbound: Cache poisoning via insufficient RRSIG.Labels validation and premature cache writes unbound: Unbound: Denial of Service via malformed EDNS Report-Channel option kernel: smb: client: validate DFS referral PathConsumed kbd: Local privilege escalation in openvt via incorrect process owner verification allowing passwordless root login</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:60440"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:57252</id>
    <title>RLSA-2026:57252 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T08:25:35.497881+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:9: kernel</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: netfilter: nf_conntrack_h323: fix OOB read in decode_choice() (CVE-2026-43233)</p>
<p>* kernel: drm/amdkfd: Fix out-of-bounds write in kfd_event_page_set() (CVE-2026-43206)</p>
<p>* kernel: drm/amdgpu: Refactor amdgpu_gem_va_ioctl for Handling Last Fence Update and Timeline Management v4 (CVE-2026-43237)</p>
<p>* kernel: udf: fix partition descriptor append bookkeeping (CVE-2026-45991)</p>
<p>* kernel: drm/amdkfd: Fix watch_id bounds checking in debug address watch v2 (CVE-2026-45878)</p>
<p>* kernel: ip6_gre: Use cached t-&gt;net in ip6erspan_changelink() (CVE-2026-46120)</p>
<p>* kernel: sched/psi: fix race between file release and pressure write (CVE-2026-52991)</p>
<p>* kernel: drm/amdkfd: Fix buffer overflow in SDMA queue checkpoint/restore on GFX11 (CVE-2026-53143)</p>
<p>* kernel: drm/amd/display: Clamp VBIOS HDMI retimer register count to array size (CVE-2026-53136)</p>
<p>* kernel: mm/huge_memory: update file PMD counter before folio_put() (CVE-2026-53189)</p>
<p>* kernel: drm/amd/display: Use krealloc_array() in dal_vector_reserve() (CVE-2026-53329)</p>
<p>* kernel: drm/i915/gem: Fix phys BO pread/pwrite with offset (CVE-2026-53356)</p>
<p>* kernel: drm/amdgpu: zero-initialize GART table on allocation (CVE-2026-53374)</p>
<p>* kernel: drm/i915: Fix potential UAF in TTM object purge (CVE-2026-63884)</p>
<p>* kernel: netfilter: synproxy: refresh tcphdr after skb_ensure_writable (CVE-2026-64007)</p>
<p>* kernel: memfd: deny writeable mappings wh…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:57252"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:23477-1</id>
    <title>SUSE-SU-2026:23477-1 — Security update for the Linux Kernel</title>
    <updated>2026-10-03T08:25:35.497930+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for the Linux Kernel</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:23477-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-68343</id>
    <title>UBUNTU-CVE-2026-68343</title>
    <updated>2026-10-03T08:25:35.498286+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 239 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: smb: client: validate DFS referral PathConsumed parse_dfs_referrals() validates that the response contains the fixed referral entry array and, on for-next, the per-referral string offsets. However, the response also contains a PathConsumed value that is later used for DFS path parsing. If a malformed response provides a PathConsumed value larger than the search name, later DFS parsing can advance beyond the end of the path. Validate PathConsumed against the search name length before storing it in the parsed referral.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-68343"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2730</id>
    <title>WID-SEC-W-2026-2730 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T08:25:35.498618+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, darunter möglicherweise die Ausführung von beliebigem Code, die Ausweitung von Berechtigungen, die Offenlegung von Informationen, die Manipulation von Daten oder Denial-of-Service-Zustände.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2730"/>
  </entry>
</feed>
