<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T10:41:05.375021+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:72623</id>
    <title>ALSA-2026:72623 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T10:41:05.478964+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: kernel, AlmaLinux:9: kernel-64k, AlmaLinux:9: kernel-64k-core, AlmaLinux:9: kernel-64k-debug, AlmaLinux:9: kernel-64k-debug-core, AlmaLinux:9: kernel-64k-debug-devel, AlmaLinux:9: kernel-64k-debug-devel-matched, AlmaLinux:9: kernel-64k-debug-modules, AlmaLinux:9: kernel-64k-debug-modules-core, AlmaLinux:9: kernel-64k-debug-modules-extra and 64 more</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942)
  * kernel: RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE (CVE-2026-46325)
  * kernel: crypto: af_alg - Cap AEAD AD length to 0x80000000 (CVE-2026-52972)
  * kernel: fhandle: fix UAF due to unlocked -&gt;mnt_ns read in may_decode_fh() (CVE-2026-53341)
  * kernel: arm64: tlb: Flush walk cache when unsharing PMD tables (CVE-2026-63875)
  * kernel: RDMA/siw: Reject MPA FPDU length underflow before signed receive math (CVE-2026-64102)
  * kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556)
  * kernel: crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() (CVE-2026-80522)
  * kernel: perf: Reject exited events as group leaders (CVE-2026-74753)</p>
<p>Bug Fix(es) and Enhancement(s):</p>
<p>* KVM: s390: Limit adapter indicator access to mapped page [almalinux-9.8.z] (JIRA:AlmaLinux-188656)
  * crypto: xxhash64 should not be fips approved [almalinux-9.8.z] (JIRA:AlmaLinux-256437)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:72623"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2026-80522</id>
    <title>BELL-CVE-2026-80522</title>
    <updated>2026-10-03T10:41:05.479110+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2026-80522"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1232</id>
    <title>certfr-2026-avi-1232 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Certaines d'entre elles permettent à…</title>
    <updated>2026-10-03T10:41:05.479136+00:00</updated>
    <content>certfr-2026-avi-1232</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-1232"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-359780</id>
    <title>EUVD-2026-359780</title>
    <updated>2026-10-03T10:41:05.479153+00:00</updated>
    <content>EUVD-2026-359780</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-359780"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-80522</id>
    <title>fkie_cve-2026-80522</title>
    <updated>2026-10-03T10:41:05.479165+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req()</p>
<p>Perform rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() the same way
it is done in tegra_ccm_crypt_init(). The current formulae may lead to a
crash if a caller does not call tegra_gcm_setauthsize() and so ctx-&gt;authsize
remains zero. Then a decrypt operation with incorrect rctx-&gt;cryptlen will
lead to a write beyound rctx-&gt;dst_sg buffer.</p>
<p>As a follow-up cleanup delete struct tegra_aead_ctx-&gt;authsize field since
it appears to be completely unused. Also simplify tegra_ccm_setauthsize()
and tegra_gcm_setauthsize() functions respectively.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-80522"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-fhv2-cf5f-4mpm</id>
    <title>GHSA-fhv2-cf5f-4mpm</title>
    <updated>2026-10-03T10:41:05.479193+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>In the Linux kernel, the following vulnerability has been resolved:</p>
<p>crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req()</p>
<p>Perform rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() the same way
it is done in tegra_ccm_crypt_init(). The current formulae may lead to a
crash if a caller does not call tegra_gcm_setauthsize() and so ctx-&gt;authsize
remains zero. Then a decrypt operation with incorrect rctx-&gt;cryptlen will
lead to a write beyound rctx-&gt;dst_sg buffer.</p>
<p>As a follow-up cleanup delete struct tegra_aead_ctx-&gt;authsize field since
it appears to be completely unused. Also simplify tegra_ccm_setauthsize()
and tegra_gcm_setauthsize() functions respectively.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-fhv2-cf5f-4mpm"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:72623</id>
    <title>RHSA-2026:72623 — Red Hat Security Advisory: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T10:41:05.479230+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: ext4: fix e4b bitmap inconsistency reports kernel: RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE kernel: crypto: af_alg - Cap AEAD AD length to 0x80000000 kernel: fhandle: fix UAF due to unlocked -&gt;mnt_ns read in may_decode_fh() kernel: arm64: tlb: Flush walk cache when unsharing PMD tables kernel: RDMA/siw: Reject MPA FPDU length underflow before signed receive math kernel: perf/core: Detach event groups during remove_on_exec kernel: perf: Reject exited events as group leaders kernel: crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req()</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:72623"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:72624</id>
    <title>RHSA-2026:72624 — Red Hat Security Advisory: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T10:41:05.479336+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>kernel: ext4: fix e4b bitmap inconsistency reports kernel: KVM: nSVM: Raise #UD if unhandled VMMCALL isn't intercepted by L1 kernel: KVM: arm64: Reassign nested_mmus array behind mmu_lock kernel: fhandle: fix UAF due to unlocked -&gt;mnt_ns read in may_decode_fh() kernel: perf/core: Detach event groups during remove_on_exec kernel: vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets kernel: perf: Reject exited events as group leaders kernel: crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() kernel: nvme-tcp: reject a read that transferred too few bytes kernel: KVM: arm64: Handle negative S1 walk levels in VNCR TLB size evaluation</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:72624"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:72623</id>
    <title>RLSA-2026:72623 — Important: kernel security, bug fix, and enhancement update</title>
    <updated>2026-10-03T10:41:05.479370+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:9: kernel</p>
<p>The kernel packages contain the Linux kernel, the core of any Linux operating system.</p>
<p>Security Fix(es):</p>
<p>* kernel: ext4: fix e4b bitmap inconsistency reports (CVE-2026-45942)</p>
<p>* kernel: RDMA/rxe: Fix iova-to-va conversion for MR page sizes != PAGE_SIZE (CVE-2026-46325)</p>
<p>* kernel: crypto: af_alg - Cap AEAD AD length to 0x80000000 (CVE-2026-52972)</p>
<p>* kernel: fhandle: fix UAF due to unlocked -&gt;mnt_ns read in may_decode_fh() (CVE-2026-53341)</p>
<p>* kernel: arm64: tlb: Flush walk cache when unsharing PMD tables (CVE-2026-63875)</p>
<p>* kernel: RDMA/siw: Reject MPA FPDU length underflow before signed receive math (CVE-2026-64102)</p>
<p>* kernel: perf/core: Detach event groups during remove_on_exec (CVE-2026-64556)</p>
<p>* kernel: crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() (CVE-2026-80522)</p>
<p>* kernel: perf: Reject exited events as group leaders (CVE-2026-74753)</p>
<p>Bug Fix(es) and Enhancement(s):</p>
<p>* KVM: s390: Limit adapter indicator access to mapped page [rhel-9.8.z] (JIRA:Rocky Linux-188656)</p>
<p>* crypto: xxhash64 should not be fips approved [rhel-9.8.z] (JIRA:Rocky Linux-256437)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:72623"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-80522</id>
    <title>UBUNTU-CVE-2026-80522</title>
    <updated>2026-10-03T10:41:05.479407+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 120 more</p>
<p>In the Linux kernel, the following vulnerability has been resolved: crypto: tegra - fix rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() Perform rctx-&gt;cryptlen calculation in tegra_gcm_do_one_req() the same way it is done in tegra_ccm_crypt_init(). The current formulae may lead to a crash if a caller does not call tegra_gcm_setauthsize() and so ctx-&gt;authsize remains zero. Then a decrypt operation with incorrect rctx-&gt;cryptlen will lead to a write beyound rctx-&gt;dst_sg buffer. As a follow-up cleanup delete struct tegra_aead_ctx-&gt;authsize field since it appears to be completely unused. Also simplify tegra_ccm_setauthsize() and tegra_gcm_setauthsize() functions respectively.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-80522"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3042</id>
    <title>WID-SEC-W-2026-3042 — Linux Kernel: Mehrere Schwachstellen</title>
    <updated>2026-10-03T10:41:05.479583+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, darunter möglicherweise die Ausführung von beliebigem Code, die Ausweitung von Berechtigungen, die Offenlegung von Informationen, die Manipulation von Daten oder Denial-of-Service-Zustände.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3042"/>
  </entry>
</feed>
