<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:39:39 +0000</lastBuildDate>
    <item>
      <title>certa-2009-avi-069 — Plusieurs vulnérabilités découvertes dans Java pour Max OS X permettent
à une personne malveillante d'élever ses privil…</title>
      <link>https://cve.radiocsirt.org/vuln/certa-2009-avi-069</link>
      <description>certa-2009-avi-069</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certa-2009-avi-069</guid>
    </item>
    <item>
      <title>EUVD-2026-130290</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-130290</link>
      <description>EUVD-2026-130290</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-130290</guid>
    </item>
    <item>
      <title>fkie_cve-2008-5343</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2008-5343</link>
      <description>&lt;p&gt;Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attackers to make unauthorized network connections and hijack HTTP sessions via a crafted file that validates as both a GIF and a Java JAR file, aka &amp;#34;GIFAR&amp;#34; and CR 6707535.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attackers to make unauthorized network connections and hijack HTTP sessions via a crafted file that validates as both a GIF and a Java JAR file, aka &amp;#34;GIFAR&amp;#34; and CR 6707535.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2008-5343</guid>
    </item>
    <item>
      <title>GHSA-48xx-r45r-42qg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-48xx-r45r-42qg</link>
      <description>&lt;p&gt;Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attackers to make unauthorized network connections and hijack HTTP sessions via a crafted file that validates as both a GIF and a Java JAR file, aka &amp;#34;GIFAR&amp;#34; and CR 6707535.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows remote attackers to make unauthorized network connections and hijack HTTP sessions via a crafted file that validates as both a GIF and a Java JAR file, aka &amp;#34;GIFAR&amp;#34; and CR 6707535.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-48xx-r45r-42qg</guid>
    </item>
    <item>
      <title>gsd-2008-5343</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2008-5343</link>
      <description>gsd-2008-5343</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2008-5343</guid>
    </item>
    <item>
      <title>RHSA-2008:1018 — Red Hat Security Advisory: java-1.6.0-sun security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2008:1018</link>
      <description>&lt;p&gt;Java Web Start File Inclusion via System Properties Override JavaWebStart allows unauthorized network connections Java WebStart privilege escalation Java Web Start exposes username and the pathname of the JWS cache Java Web Start BasicService displays local files in the browser Java WebStart allows hidden code privilege escalation Java WebStart unprivileged local file and network access JRE allows unauthorized file access and connections to localhost OpenJDK applet privilege escalation via JAX package access (6592792) OpenJDK Denial-Of-Service in kerberos authentication (6588160) OpenJDK RSA public key length denial-of-service (6497740) OpenJDK allows to list files within the user home directory (6484091) OpenJDK UTF-8 decoder accepts non-shortest form sequences (4486841) OpenJDK Jar200 Decompression buffer overflow (6755943) OpenJDK calendar object deserialization allows privilege escalation (6734167) OpenJDK Privilege escalation in command line applications (6733959) OpenJDK Font processing vulnerability (6733336) OpenJDK Truetype Font processing vulnerability (6751322) OpenJDK Buffer Overflow in GIF image processing (6766136) OpenJDK Buffer overflow in image processing (6726779) OpenJDK temporary files have guessable file names (6721753)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Java Web Start File Inclusion via System Properties Override JavaWebStart allows unauthorized network connections Java WebStart privilege escalation Java Web Start exposes username and the pathname of the JWS cache Java Web Start BasicService displays local files in the browser Java WebStart allows hidden code privilege escalation Java WebStart unprivileged local file and network access JRE allows unauthorized file access and connections to localhost OpenJDK applet privilege escalation via JAX package access (6592792) OpenJDK Denial-Of-Service in kerberos authentication (6588160) OpenJDK RSA public key length denial-of-service (6497740) OpenJDK allows to list files within the user home directory (6484091) OpenJDK UTF-8 decoder accepts non-shortest form sequences (4486841) OpenJDK Jar200 Decompression buffer overflow (6755943) OpenJDK calendar object deserialization allows privilege escalation (6734167) OpenJDK Privilege escalation in command line applications (6733959) OpenJDK Font processing vulnerability (6733336) OpenJDK Truetype Font processing vulnerability (6751322) OpenJDK Buffer Overflow in GIF image processing (6766136) OpenJDK Buffer overflow in image processing (6726779) OpenJDK temporary files have guessable file names (6721753)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2008:1018</guid>
    </item>
  </channel>
</rss>
