<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T14:54:42.276244+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:64774</id>
    <title>ALSA-2026:64774 — Important: python3.14-cryptography security update</title>
    <updated>2026-10-02T14:54:42.305172+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: python3.14-cryptography</p>
<p>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.</p>
<p>Security Fix(es):</p>
<p>* python-cryptography: python-cryptography: Duplicate self-signed intermediates can cause exponential path-building (CVE-2026-69249)
  * python-cryptography: python-cryptography: python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees (CVE-2026-69248)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:64774"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2026-11011</id>
    <title>bdu:2026-11011</title>
    <updated>2026-10-02T14:54:42.305237+00:00</updated>
    <content>bdu:2026-11011</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2026-11011"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-ansible@10-cve-2026-69249</id>
    <title>BREW-ansible@10-CVE-2026-69249 — python-cryptography: Duplicate self-signed intermediates can cause exponential path-building</title>
    <updated>2026-10-02T14:54:42.305255+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: ansible@10</p>
<p>### Summary
When resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack.</p>
<p>This work was completed by Trail of Bits as part of the Patch The Planet project in collaboration with OpenAI. The finding was identified primarily by the Codex coding agent, and manually reviewed before submission.</p>
<p>### Details
The core issue arises in the recursive nature of `build_chain_inner`, which does not de-duplicate against previously analyzed candidates.</p>
<p>```python
    fn build_chain_inner(
        &amp;self,
        working_cert: &amp;VerificationCertificate&lt;'chain, B&gt;,
        current_depth: u8,
        working_cert_extensions: &amp;Extensions&lt;'chain&gt;,
        name_chain: NameChain&lt;'_, 'chain&gt;,
        budget: &amp;mut Budget,
    ) -&gt; ValidationResult&lt;'chain, Chain&lt;'chain, B&gt;, B&gt; {
        if let Some(nc) = working_cert_extensions.get_extension(&amp;NAME_CONSTRAINTS_OID) {
            name_chain.evaluate_constraints(&amp;nc.value()?, budget)?;
        }</p>
<p>// Look in the store's root set to see if the working cert is listed.
        // I…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-ansible@10-cve-2026-69249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1094</id>
    <title>certfr-2026-avi-1094 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
    <updated>2026-10-02T14:54:42.305332+00:00</updated>
    <content>certfr-2026-avi-1094</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-1094"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cleanstart-2026-cf86587</id>
    <title>Withdrawn: CLEANSTART-2026-CF86587 — Security fixes in litellm-database 1.94.3-r0</title>
    <updated>2026-10-02T14:54:42.305360+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Withdrawn by the publisher.</strong></p>
<p><strong>Affected:</strong> CleanStart: litellm-database</p>
<p>Package litellm-database version 1.94.3-r0 fixes 3 vulnerabilities: CVE-2026-69247, CVE-2026-69248, CVE-2026-69249</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cleanstart-2026-cf86587"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-364127</id>
    <title>EUVD-2026-364127</title>
    <updated>2026-10-02T14:54:42.305402+00:00</updated>
    <content>EUVD-2026-364127</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-364127"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-69249</id>
    <title>fkie_cve-2026-69249</title>
    <updated>2026-10-02T14:54:42.305417+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In versions 42.0.0 through 48.0.0, when resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack. The core issue arises in the recursive nature of build_chain_inner, which does not de-duplicate against previously analyzed candidates. As the correctness of validation is not affected, the integrity of a system cannot be compromised through this vector, only its availability. This issue is fixed in 49.0.0.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-69249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-jwv3-5hgf-82ww</id>
    <title>GHSA-jwv3-5hgf-82ww — python-cryptography: Duplicate self-signed intermediates can cause exponential path-building</title>
    <updated>2026-10-02T14:54:42.305442+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: cryptography</p>
<p>### Summary
When resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack.</p>
<p>This work was completed by Trail of Bits as part of the Patch The Planet project in collaboration with OpenAI. The finding was identified primarily by the Codex coding agent, and manually reviewed before submission.</p>
<p>### Details
The core issue arises in the recursive nature of `build_chain_inner`, which does not de-duplicate against previously analyzed candidates.</p>
<p>```python
    fn build_chain_inner(
        &amp;self,
        working_cert: &amp;VerificationCertificate&lt;'chain, B&gt;,
        current_depth: u8,
        working_cert_extensions: &amp;Extensions&lt;'chain&gt;,
        name_chain: NameChain&lt;'_, 'chain&gt;,
        budget: &amp;mut Budget,
    ) -&gt; ValidationResult&lt;'chain, Chain&lt;'chain, B&gt;, B&gt; {
        if let Some(nc) = working_cert_extensions.get_extension(&amp;NAME_CONSTRAINTS_OID) {
            name_chain.evaluate_constraints(&amp;nc.value()?, budget)?;
        }</p>
<p>// Look in the store's root set to see if the working cert is listed.
        // I…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-jwv3-5hgf-82ww"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-69249</id>
    <title>msrc_CVE-2026-69249 — python-cryptography: Duplicate self-signed intermediates can cause exponential path-building</title>
    <updated>2026-10-02T14:54:42.305502+00:00</updated>
    <content>msrc_CVE-2026-69249</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-69249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-3457</id>
    <title>OESA-2026-3457 — python-cryptography security update</title>
    <updated>2026-10-02T14:54:42.305518+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP3: python-cryptography</p>
<p>cryptography is a package designed to expose cryptographic primitives and recipes to Python developers.

Security Fix(es):</p>
<p>python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 49.0.0, when resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack. The core issue arises in the recursive nature of build_chain_inner, which does not de-duplicate against previously analyzed candidates. As the correctness of validation is not affected, the integrity of a system cannot be compromised through this vector, only its availability. This issue is fixed in 49.0.0.(CVE-2026-69249)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-3457"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21685-1</id>
    <title>openSUSE-SU-2026:21685-1 — Security update for python-cryptography</title>
    <updated>2026-10-02T14:54:42.305542+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for python-cryptography</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:21685-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/pysec-2026-3553</id>
    <title>PYSEC-2026-3553 — python-cryptography: Duplicate self-signed intermediates can cause exponential path-building</title>
    <updated>2026-10-02T14:54:42.305559+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: cryptography</p>
<p>### Summary
When resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack.</p>
<p>This work was completed by Trail of Bits as part of the Patch The Planet project in collaboration with OpenAI. The finding was identified primarily by the Codex coding agent, and manually reviewed before submission.</p>
<p>### Details
The core issue arises in the recursive nature of `build_chain_inner`, which does not de-duplicate against previously analyzed candidates.</p>
<p>```python
    fn build_chain_inner(
        &amp;self,
        working_cert: &amp;VerificationCertificate&lt;'chain, B&gt;,
        current_depth: u8,
        working_cert_extensions: &amp;Extensions&lt;'chain&gt;,
        name_chain: NameChain&lt;'_, 'chain&gt;,
        budget: &amp;mut Budget,
    ) -&gt; ValidationResult&lt;'chain, Chain&lt;'chain, B&gt;, B&gt; {
        if let Some(nc) = working_cert_extensions.get_extension(&amp;NAME_CONSTRAINTS_OID) {
            name_chain.evaluate_constraints(&amp;nc.value()?, budget)?;
        }</p>
<p>// Look in the store's root set to see if the working cert is listed.
        // I…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/pysec-2026-3553"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:55543</id>
    <title>RHSA-2026:55543 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
    <updated>2026-10-02T14:54:42.305614+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>openssl: OpenSSL: Heap buffer overflow due to signed integer overflow in Unicode output sizing openssl: OpenSSL: Denial of Service due to heap out-of-bounds read in CMS password-based decryption openssl: OpenSSL: Heap buffer over-read in ASN.1 decoding can lead to denial of service or information disclosure. openssl: PKCS#12 Files with PBMAC1 Are Accepted with Short HMAC Keys openssl: CMS AuthEnvelopedData Processing May Accept Forged Messages openssl: Unbounded Memory Growth in the QUIC PATH_CHALLENGE Handler openssl: Double-free When Checking OCSP Stapled Response openssl: NULL pointer dereference in QUIC server initial packet handling openssl: NULL Dereference in Certificate Verification with OCSP Checking openssl: Possible NULL Dereference in Password-Based CMS Decryption openssl: NULL Pointer Dereference in CRMF EncryptedValue Decryption openssl: Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() openssl: Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate openssl: FFC-DH Peer Validation Uses Attacker-Supplied q openssl: Possible Out of Bounds Read in X509_VERIFY_PARAM_set1_email() openssl: AES-OCB IV Ignored on EVP_Cipher() Path openssl: Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes openssl: Heap Use-After-Free in OpenSSL PKCS7_verify() openssl: openssl-src: OpenSSL: Memory leak leads to Denial of Service in OCSP response checking python-cryptography: python-cryptography: PKCS#7 EnvelopedData…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:55543"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:64774</id>
    <title>RLSA-2026:64774 — Important: python3.14-cryptography security update</title>
    <updated>2026-10-02T14:54:42.305669+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:9: python3.14-cryptography</p>
<p>Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.</p>
<p>Security Fix(es):</p>
<p>* python-cryptography: python-cryptography: Duplicate self-signed intermediates can cause exponential path-building (CVE-2026-69249)</p>
<p>* python-cryptography: python-cryptography: python-cryptography verifier accepts wildcard DNS names allowing escape from permittedSubtrees (CVE-2026-69248)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:64774"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:23196-1</id>
    <title>SUSE-SU-2026:23196-1 — Security update for python-cryptography</title>
    <updated>2026-10-02T14:54:42.305694+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for python-cryptography</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:23196-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-69249</id>
    <title>UBUNTU-CVE-2026-69249</title>
    <updated>2026-10-02T14:54:42.305708+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:26.04:LTS: python-cryptography</p>
<p>python-cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. In versions 42.0.0 through 48.0.0, when resolving invalid certificate chains that include duplicate copies of self-signed certificates, the processing recursively invokes the same candidate, leading to an exponential blowup. Although the limitation that the chain depth cannot exceed a specified maximum depth prevents unbounded recursion and guarantees termination, an attacker-controlled certificate chain can lead the processing to easily take more than 5s to reject in testing. This amplification could form the basis for a resource exhaustion denial of service attack. The core issue arises in the recursive nature of build_chain_inner, which does not de-duplicate against previously analyzed candidates. As the correctness of validation is not affected, the integrity of a system cannot be compromised through this vector, only its availability. This issue is fixed in 49.0.0.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-69249"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3214</id>
    <title>WID-SEC-W-2026-3214 — Red Hat Enterprise Linux (python-cryptography): Mehrere Schwachstellen</title>
    <updated>2026-10-02T14:54:42.305729+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um Sicherheitsvorkehrungen zu umgehen oder um einen Denial-of-Service-Zustand herbeizuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3214"/>
  </entry>
</feed>
