<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-06T05:38:09.188627+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2022-05894</id>
    <title>bdu:2022-05894</title>
    <updated>2026-10-06T05:38:09.193396+00:00</updated>
    <content>bdu:2022-05894</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2022-05894"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-232797</id>
    <title>EUVD-2026-232797</title>
    <updated>2026-10-06T05:38:09.193429+00:00</updated>
    <content>EUVD-2026-232797</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-232797"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2022-23639</id>
    <title>fkie_cve-2022-23639</title>
    <updated>2026-10-06T05:38:09.193443+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>crossbeam-utils provides atomics, synchronization primitives, scoped threads, and other utilities for concurrent programming in Rust. crossbeam-utils prior to version 0.8.7 incorrectly assumed that the alignment of `{i,u}64` was always the same as `Atomic{I,U}64`. However, the alignment of `{i,u}64` on a 32-bit target can be smaller than `Atomic{I,U}64`. This can cause unaligned memory accesses and data race. Crates using `fetch_*` methods with `AtomicCell&lt;{i,u}64&gt;` are affected by this issue. 32-bit targets without `Atomic{I,U}64` and 64-bit targets are not affected by this issue. This has been fixed in crossbeam-utils 0.8.7. There are currently no known workarounds.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2022-23639"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qc84-gqf4-9926</id>
    <title>GHSA-qc84-gqf4-9926 — crossbeam-utils Unsoundness of AtomicCell&lt;{i,u}64&gt; arithmetics on 32-bit targets that support Atomic{I,U}64</title>
    <updated>2026-10-06T05:38:09.193476+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: crossbeam-utils</p>
<p>### Impact</p>
<p>The affected versions of this crate incorrectly assumed that the alignment of `{i,u}64` was always the same as `Atomic{I,U}64`.</p>
<p>However, the alignment of `{i,u}64` on a 32-bit target can be smaller than `Atomic{I,U}64`.</p>
<p>This can cause the following problems:</p>
<p>- Unaligned memory accesses
- Data race</p>
<p>Crates using `fetch_*` methods with `AtomicCell&lt;{i,u}64&gt;` are affected by this issue.</p>
<p>32-bit targets without `Atomic{I,U}64` and 64-bit targets are not affected by this issue.
32-bit targets with `Atomic{I,U}64` and `{i,u}64` have the same alignment are also not affected by this issue.</p>
<p>The following is a complete list of the builtin targets that may be affected. (last update: nightly-2022-02-11)</p>
<p>- armv7-apple-ios (tier 3)
- armv7s-apple-ios (tier 3)
- i386-apple-ios (tier 3)
- i586-unknown-linux-gnu
- i586-unknown-linux-musl
- i686-apple-darwin (tier 3)
- i686-linux-android
- i686-unknown-freebsd
- i686-unknown-haiku (tier 3)
- i686-unknown-linux-gnu
- i686-unknown-linux-musl
- i686-unknown-netbsd (tier 3)
- i686-unknown-openbsd (tier 3)
- i686-wrs-vxworks (tier 3)</p>
<p>([script to get list](https://gist.github.com/taiki-e/3c7891e8c5f5e0cbcb44d7396aabfe10))</p>
<p>### Patches</p>
<p>This has been fixed in crossbeam-utils 0.8.7.</p>
<p>Affected 0.8.x releases have been yanked.</p>
<p>### References</p>
<p>https://github.com/crossbeam-rs/crossbeam/pull/781</p>
<p>### License</p>
<p>This advisory is in the public domain.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qc84-gqf4-9926"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2022-23639</id>
    <title>gsd-2022-23639</title>
    <updated>2026-10-06T05:38:09.193527+00:00</updated>
    <content>gsd-2022-23639</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2022-23639"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2022-23639</id>
    <title>msrc_CVE-2022-23639 — Improper Restriction of Operations within the Bounds of a Memory Buffer and Race Condition in crossbeam-utils</title>
    <updated>2026-10-06T05:38:09.193541+00:00</updated>
    <content>msrc_CVE-2022-23639</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2022-23639"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rustsec-2022-0041</id>
    <title>RUSTSEC-2022-0041 — Unsoundness of AtomicCell&lt;*64&gt; arithmetics on 32-bit targets that support Atomic*64</title>
    <updated>2026-10-06T05:38:09.193557+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> crates.io: crossbeam-utils</p>
<p>## Impact</p>
<p>Affected versions of this crate incorrectly assumed that the alignment of {i,u}64 was always the same as Atomic{I,U}64.</p>
<p>However, the alignment of {i,u}64 on a 32-bit target can be smaller than Atomic{I,U}64.</p>
<p>This can cause the following problems:</p>
<p>- Unaligned memory accesses
- Data race</p>
<p>Crates using fetch_* methods with AtomicCell&lt;{i,u}64&gt; are affected by this issue.</p>
<p>32-bit targets without Atomic{I,U}64 and 64-bit targets are not affected by this issue.</p>
<p>32-bit targets with Atomic{I,U}64 and {i,u}64 have the same alignment are also not affected by this issue.</p>
<p>The following is a complete list of the builtin targets that may be affected. (last update: nightly-2022-02-11)</p>
<p>- armv7-apple-ios (tier 3)
- armv7s-apple-ios (tier 3)
- i386-apple-ios (tier 3)
- i586-unknown-linux-gnu
- i586-unknown-linux-musl
- i686-apple-darwin (tier 3)
- i686-linux-android
- i686-unknown-freebsd
- i686-unknown-haiku (tier 3)
- i686-unknown-linux-gnu
- i686-unknown-linux-musl
- i686-unknown-netbsd (tier 3)
- i686-unknown-openbsd (tier 3)
- i686-wrs-vxworks (tier 3)</p>
<p>([script to get list](https://gist.github.com/taiki-e/3c7891e8c5f5e0cbcb44d7396aabfe10))</p>
<p>## Patches</p>
<p>This has been fixed in crossbeam-utils 0.8.7.</p>
<p>Affected 0.8.x releases have been yanked.</p>
<p>Thanks to [@taiki-e](https://github.com/taiki-e).</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rustsec-2022-0041"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-23639</id>
    <title>UBUNTU-CVE-2022-23639</title>
    <updated>2026-10-06T05:38:09.193593+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: rustc, Ubuntu:Pro:16.04:LTS: cargo, Ubuntu:Pro:16.04:LTS: rustc, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: rustc, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:20.04:LTS: rust-crossbeam-utils, Ubuntu:22.04:LTS: firefox and 8 more</p>
<p>crossbeam-utils provides atomics, synchronization primitives, scoped threads, and other utilities for concurrent programming in Rust. crossbeam-utils prior to version 0.8.7 incorrectly assumed that the alignment of `{i,u}64` was always the same as `Atomic{I,U}64`. However, the alignment of `{i,u}64` on a 32-bit target can be smaller than `Atomic{I,U}64`. This can cause unaligned memory accesses and data race. Crates using `fetch_*` methods with `AtomicCell&lt;{i,u}64&gt;` are affected by this issue. 32-bit targets without `Atomic{I,U}64` and 64-bit targets are not affected by this issue. This has been fixed in crossbeam-utils 0.8.7. There are currently no known workarounds.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-23639"/>
  </entry>
</feed>
