<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T13:13:12.586827+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:67265</id>
    <title>ALSA-2026:67265 — Moderate: libkcapi security, bug fix, and enhancement update</title>
    <updated>2026-10-03T13:13:12.914135+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: libkcapi, AlmaLinux:9: libkcapi-hmaccalc</p>
<p>libkcapi allows user-space to access the Linux kernel crypto API. This library uses the netlink interface and exports easy to use APIs so that a developer does not need to consider the low-level netlink interface handling. The library does not implement any cipher algorithms. All consumer requests are sent to the kernel for processing. Results from the kernel crypto API are returned to the consumer via the library API. The kernel interface and therefore this library can be used by unprivileged processes.</p>
<p>Security Fix(es):</p>
<p>* libkcapi: IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries (CVE-2026-71225)
  * libkcapi: Memory corruption via uncanceled AIO requests on error in libkcapi's one-shot AIO path (CVE-2026-71226)
  * libkcapi: Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return (CVE-2026-71227)</p>
<p>Bug Fix(es) and Enhancement(s):</p>
<p>* libkcapi: AEAD Decrypt Auth Check Skipped for Zero-Length Input in `kcapi-enc` [almalinux-9.8.z] (JIRA:AlmaLinux-242667)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:67265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-71227</id>
    <title>BELL-CVE-2026-71227</title>
    <updated>2026-10-03T13:13:12.914211+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: libkcapi, Alpaquita:25: libkcapi, Alpaquita:stream: libkcapi</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-71227"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-372776</id>
    <title>EUVD-2026-372776</title>
    <updated>2026-10-03T13:13:12.914237+00:00</updated>
    <content>EUVD-2026-372776</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-372776"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-71227</id>
    <title>fkie_cve-2026-71227</title>
    <updated>2026-10-03T13:13:12.914250+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-71227"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c5mv-c5vm-62w5</id>
    <title>GHSA-c5mv-c5vm-62w5</title>
    <updated>2026-10-03T13:13:12.914274+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c5mv-c5vm-62w5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-71227</id>
    <title>msrc_CVE-2026-71227 — Libkcapi: infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout ret…</title>
    <updated>2026-10-03T13:13:12.914290+00:00</updated>
    <content>msrc_CVE-2026-71227</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-71227"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-3440</id>
    <title>OESA-2026-3440 — libkcapi security update</title>
    <updated>2026-10-03T13:13:12.914308+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP4: libkcapi, openEuler:20.03-LTS-SP4: libkcapi, openEuler:22.03-LTS-SP4: libkcapi, openEuler:24.03-LTS-SP1: libkcapi, openEuler:24.03-LTS-SP3: libkcapi</p>
<p>The Linux kernel exports a Netlink interface of type AF_ALG to allow user space to utilize the kernel crypto API. libkcapi uses this Netlink interface and exports easy to use APIs so that a developer does not need to consider the low-level Netlink interface handling. The library does not implement any cipher algorithms. All consumer requests are sent to the kernel for processing. Results from the kernel crypto API are returned to the consumer via the library API.

Security Fix(es):</p>
<p>Memory Corruption via Uncanceled AIO Requests on Error: libkcapi&amp;apos;s one-shot AIO path can return an error before all submitted IOCBs are drained, allowing later kernel writes into caller-owned output buffers.(CVE-2026-71226)</p>
<p>A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.(CVE-2026-71227)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-3440"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:56985</id>
    <title>RHSA-2026:56985 — Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update</title>
    <updated>2026-10-03T13:13:12.914343+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libkcapi: IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries libkcapi: Memory corruption via uncanceled AIO requests on error in libkcapi's one-shot AIO path libkcapi: Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:56985"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:67265</id>
    <title>RHSA-2026:67265 — Red Hat Security Advisory: libkcapi security, bug fix, and enhancement update</title>
    <updated>2026-10-03T13:13:12.914367+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>libkcapi: IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries libkcapi: Memory corruption via uncanceled AIO requests on error in libkcapi's one-shot AIO path libkcapi: Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:67265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:67265</id>
    <title>RLSA-2026:67265 — Moderate: libkcapi security, bug fix, and enhancement update</title>
    <updated>2026-10-03T13:13:12.914388+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:9: libkcapi</p>
<p>libkcapi allows user-space to access the Linux kernel crypto API.  This library uses the netlink interface and exports easy to use APIs so that a developer does not need to consider the low-level netlink interface handling.  The library does not implement any cipher algorithms.  All consumer requests are sent to the kernel for processing.  Results from the kernel crypto API are returned to the consumer via the library API.  The kernel interface and therefore this library can be used by unprivileged processes.</p>
<p>Security Fix(es):</p>
<p>* libkcapi: IV reuse in libkcapi one-shot symmetric cipher chunking causes cipher state reset across chunk boundaries (CVE-2026-71225)</p>
<p>* libkcapi: Memory corruption via uncanceled AIO requests on error in libkcapi's one-shot AIO path (CVE-2026-71226)</p>
<p>* libkcapi: Infinite loop denial of service in libkcapi _kcapi_aio_read_all() due to unhandled io_getevents() timeout return (CVE-2026-71227)</p>
<p>Bug Fix(es) and Enhancement(s):</p>
<p>* libkcapi: AEAD Decrypt Auth Check Skipped for Zero-Length Input in `kcapi-enc` [rhel-9.8.z] (JIRA:Rocky Linux-242667)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:67265"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71227</id>
    <title>UBUNTU-CVE-2026-71227</title>
    <updated>2026-10-03T13:13:12.914419+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:FIPS:16.04:LTS: libkcapi, Ubuntu:18.04:LTS: libkcapi, Ubuntu:Pro:FIPS-updates:18.04:LTS: libkcapi, Ubuntu:Pro:FIPS:18.04:LTS: libkcapi, Ubuntu:20.04:LTS: libkcapi, Ubuntu:Pro:FIPS-updates:20.04:LTS: libkcapi, Ubuntu:Pro:FIPS:20.04:LTS: libkcapi, Ubuntu:22.04:LTS: libkcapi, Ubuntu:Pro:FIPS-preview:22.04:LTS: libkcapi, Ubuntu:Pro:FIPS-updates:22.04:LTS: libkcapi and 2 more</p>
<p>A flaw was found in libkcapi. A local attacker can influence an application that uses the Asynchronous Input/Output (AIO) interface. By reusing an AIO-enabled handle after a prior completion error, the _kcapi_aio_read_all() function can enter a non-terminating wait loop. This can lead to a persistent denial of service, making the affected application or thread unresponsive.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71227"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3322</id>
    <title>WID-SEC-W-2026-3322 — Red Hat Enterprise Linux (libkcapi): Mehrere Schwachstellen</title>
    <updated>2026-10-03T13:13:12.914458+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um Informationen offenzulegen, Daten zu manipulieren, Speicherbeschädigungen zu verursachen oder einen Denial-of-Service-Zustand auszulösen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3322"/>
  </entry>
</feed>
