<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-05T07:59:53.564731+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-379680</id>
    <title>EUVD-2026-379680</title>
    <updated>2026-10-05T07:59:53.638597+00:00</updated>
    <content>EUVD-2026-379680</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-379680"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-71974</id>
    <title>fkie_cve-2026-71974</title>
    <updated>2026-10-05T07:59:53.638635+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-71974"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-c7vr-vjm2-3grc</id>
    <title>GHSA-c7vr-vjm2-3grc</title>
    <updated>2026-10-05T07:59:53.638670+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-c7vr-vjm2-3grc"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71974</id>
    <title>UBUNTU-CVE-2026-71974</title>
    <updated>2026-10-05T07:59:53.638687+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: u-boot, Ubuntu:18.04:LTS: u-boot, Ubuntu:20.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot-nezha, Ubuntu:24.04:LTS: u-boot, Ubuntu:24.04:LTS: u-boot-nezha, Ubuntu:26.04:LTS: u-boot</p>
<p>U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71974"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3660</id>
    <title>WID-SEC-W-2026-3660 — DENX U-Boot: Mehrere Schwachstellen</title>
    <updated>2026-10-05T07:59:53.638720+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in DENX U-Boot ausnutzen, um den Speicher zu beschädigen, Denial-of-Service-Zustände herbeizuführen oder andere, nicht näher spezifizierte Angriffe zu starten.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3660"/>
  </entry>
</feed>
