<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:33:04 +0000</lastBuildDate>
    <item>
      <title>bdu:2015-00376</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2015-00376</link>
      <description>bdu:2015-00376</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2015-00376</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2014-3515 — CVE-2014-3515 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2014-3515</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2014-3515</guid>
    </item>
    <item>
      <title>certfr-2014-avi-296 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;PHP&lt;/span&gt;. Elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2014-avi-296</link>
      <description>certfr-2014-avi-296</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2014-avi-296</guid>
    </item>
    <item>
      <title>EUVD-2026-99239</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-99239</link>
      <description>EUVD-2026-99239</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-99239</guid>
    </item>
    <item>
      <title>fkie_cve-2014-3515</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-3515</link>
      <description>&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-3515</guid>
    </item>
    <item>
      <title>GHSA-x775-rjw6-fgf2</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x775-rjw6-fgf2</link>
      <description>&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x775-rjw6-fgf2</guid>
    </item>
    <item>
      <title>gsd-2014-3515</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-3515</link>
      <description>gsd-2014-3515</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-3515</guid>
    </item>
    <item>
      <title>RHSA-2014:1012 — Red Hat Security Advisory: php53 and php security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2014:1012</link>
      <description>&lt;p&gt;file: out of bounds read in CDF parser php: heap-based buffer over-read in DateInterval file: cdf_unpack_summary_info() excessive looping DoS file: CDF property info parsing nelements infinite loop file: unrestricted recursion in handling of indirect type rules file: out-of-bounds access in search rules with offsets from input file file: cdf_check_stream_offset insufficient boundary check file: cdf_count_chain insufficient boundary check php: unserialize() SPL ArrayObject / SPLObjectStorage type confusion flaw php: heap-based buffer overflow in DNS TXT record parsing php: type confusion issue in phpinfo() leading to information leak&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;file: out of bounds read in CDF parser php: heap-based buffer over-read in DateInterval file: cdf_unpack_summary_info() excessive looping DoS file: CDF property info parsing nelements infinite loop file: unrestricted recursion in handling of indirect type rules file: out-of-bounds access in search rules with offsets from input file file: cdf_check_stream_offset insufficient boundary check file: cdf_count_chain insufficient boundary check php: unserialize() SPL ArrayObject / SPLObjectStorage type confusion flaw php: heap-based buffer overflow in DNS TXT record parsing php: type confusion issue in phpinfo() leading to information leak&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2014:1012</guid>
    </item>
    <item>
      <title>RHSA-2014:1013 — Red Hat Security Advisory: php security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2014:1013</link>
      <description>&lt;p&gt;file: extensive backtracking in awk rule regular expression file: cdf_read_short_sector insufficient boundary check file: cdf_unpack_summary_info() excessive looping DoS file: CDF property info parsing nelements infinite loop file: cdf_check_stream_offset insufficient boundary check file: cdf_count_chain insufficient boundary check file: cdf_read_property_info insufficient boundary check php: unserialize() SPL ArrayObject / SPLObjectStorage type confusion flaw php: heap-based buffer overflow in DNS TXT record parsing php: type confusion issue in phpinfo() leading to information leak&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;file: extensive backtracking in awk rule regular expression file: cdf_read_short_sector insufficient boundary check file: cdf_unpack_summary_info() excessive looping DoS file: CDF property info parsing nelements infinite loop file: cdf_check_stream_offset insufficient boundary check file: cdf_count_chain insufficient boundary check file: cdf_read_property_info insufficient boundary check php: unserialize() SPL ArrayObject / SPLObjectStorage type confusion flaw php: heap-based buffer overflow in DNS TXT record parsing php: type confusion issue in phpinfo() leading to information leak&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2014:1013</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:0370-1 — Security update for php53</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:0370-1</link>
      <description>&lt;p&gt;Security update for php53&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for php53&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:0370-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2014-3515</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3515</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: php5&lt;/p&gt;
&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: php5&lt;/p&gt;
&lt;p&gt;The SPL component in PHP before 5.4.30 and 5.5.x before 5.5.14 incorrectly anticipates that certain data structures will have the array data type after unserialization, which allows remote attackers to execute arbitrary code via a crafted string that triggers use of a Hashtable destructor, related to &amp;#34;type confusion&amp;#34; issues in (1) ArrayObject and (2) SPLObjectStorage.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3515</guid>
    </item>
  </channel>
</rss>
