<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T04:53:04.641133+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2019-04216</id>
    <title>bdu:2019-04216</title>
    <updated>2026-10-04T04:53:04.764898+00:00</updated>
    <content>bdu:2019-04216</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2019-04216"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2019-avi-311</id>
    <title>certfr-2019-avi-311 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-04T04:53:04.764937+00:00</updated>
    <content>certfr-2019-avi-311</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2019-avi-311"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cnvd-2016-06784</id>
    <title>cnvd-2016-06784</title>
    <updated>2026-10-04T04:53:04.764957+00:00</updated>
    <content>cnvd-2016-06784</content>
    <link href="https://cve.radiocsirt.org/vuln/cnvd-2016-06784"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-85756</id>
    <title>EUVD-2026-85756</title>
    <updated>2026-10-04T04:53:04.764969+00:00</updated>
    <content>EUVD-2026-85756</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-85756"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2016-6329</id>
    <title>fkie_cve-2016-6329</title>
    <updated>2026-10-04T04:53:04.764979+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2016-6329"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-w6pr-cm6j-f384</id>
    <title>GHSA-w6pr-cm6j-f384</title>
    <updated>2026-10-04T04:53:04.765008+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-w6pr-cm6j-f384"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2016-6329</id>
    <title>gsd-2016-6329</title>
    <updated>2026-10-04T04:53:04.765023+00:00</updated>
    <content>gsd-2016-6329</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2016-6329"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-19-192-04</id>
    <title>ICSA-19-192-04 — ICSA-19-192-04 Siemens SIMATIC RF6XXR</title>
    <updated>2026-10-04T04:53:04.765033+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The SSL protocol encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses e.g. the HTML5 WebSocket API, the Java URLConnection API, or the Silverlight WebClient API, aka a "BEAST" attack. The security vulnerability could be exploited by an attacker with network access to the affected systems. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise confidentiality of the device. TLS, when used with a 64-bit block cipher, could allow remote attackers to obtain cleartext data by leveraging a birthday attack against a long-duration encrypted session, aka a "Sweet32" attack. The security vulnerability could be exploited by an attacker with network access to the affected systems. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise confidentiality of the device. TLS and DTLS versions 1.1 and 1.2, as used in the affected product, do not properly consider timing side-channel attacks on a MAC check requirement during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, aka the "Lucky Thirteen"…</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-19-192-04"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2017:1622-1</id>
    <title>SUSE-SU-2017:1622-1 — Security update for openvpn</title>
    <updated>2026-10-04T04:53:04.765067+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for openvpn</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2017:1622-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6329</id>
    <title>UBUNTU-CVE-2016-6329</title>
    <updated>2026-10-04T04:53:04.765085+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:14.04:LTS: openvpn, Ubuntu:16.04:LTS: openvpn</p>
<p>OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-over-OpenVPN session using Blowfish in CBC mode, aka a "Sweet32" attack.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2016-6329"/>
  </entry>
</feed>
