<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 21:30:43 +0000</lastBuildDate>
    <item>
      <title>cnvd-2015-04021</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2015-04021</link>
      <description>cnvd-2015-04021</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2015-04021</guid>
    </item>
    <item>
      <title>EUVD-2026-91628</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-91628</link>
      <description>EUVD-2026-91628</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-91628</guid>
    </item>
    <item>
      <title>fkie_cve-2015-3142</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-3142</link>
      <description>&lt;p&gt;The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local users to obtain sensitive information by leveraging write permissions to the working directory of a crashed application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local users to obtain sensitive information by leveraging write permissions to the working directory of a crashed application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-3142</guid>
    </item>
    <item>
      <title>GHSA-fpvf-mw5r-q2rm</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fpvf-mw5r-q2rm</link>
      <description>&lt;p&gt;The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local users to obtain sensitive information by leveraging write permissions to the working directory of a crashed application.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The kernel-invoked coredump processor in Automatic Bug Reporting Tool (ABRT) does not properly check the ownership of files before writing core dumps to them, which allows local users to obtain sensitive information by leveraging write permissions to the working directory of a crashed application.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fpvf-mw5r-q2rm</guid>
    </item>
    <item>
      <title>gsd-2015-3142</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-3142</link>
      <description>gsd-2015-3142</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-3142</guid>
    </item>
    <item>
      <title>RHSA-2015:1083 — Red Hat Security Advisory: abrt security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1083</link>
      <description>&lt;p&gt;abrt: default event scripts follow symbolic links abrt: default abrt event scripts lead to information disclosure abrt: abrt-hook-ccpp writes core dumps to existing files owned by others abrt: does not validate contents of uploaded problem reports abrt: abrt-dbus does not guard against crafted problem directory path arguments abrt: directory traversals in several D-Bus methods implemented by abrt-dbus abrt: missing process environment sanitizaton in abrt-action-install-debuginfo-to-abrt-cache abrt: Various race-conditions and symlink issues found in abrt&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;abrt: default event scripts follow symbolic links abrt: default abrt event scripts lead to information disclosure abrt: abrt-hook-ccpp writes core dumps to existing files owned by others abrt: does not validate contents of uploaded problem reports abrt: abrt-dbus does not guard against crafted problem directory path arguments abrt: directory traversals in several D-Bus methods implemented by abrt-dbus abrt: missing process environment sanitizaton in abrt-action-install-debuginfo-to-abrt-cache abrt: Various race-conditions and symlink issues found in abrt&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1083</guid>
    </item>
    <item>
      <title>RHSA-2015:1210 — Red Hat Security Advisory: abrt security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1210</link>
      <description>&lt;p&gt;abrt: default event scripts follow symbolic links abrt: default abrt event scripts lead to information disclosure abrt: abrt-hook-ccpp writes core dumps to existing files owned by others abrt: does not validate contents of uploaded problem reports abrt: missing process environment sanitizaton in abrt-action-install-debuginfo-to-abrt-cache abrt: Various race-conditions and symlink issues found in abrt&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;abrt: default event scripts follow symbolic links abrt: default abrt event scripts lead to information disclosure abrt: abrt-hook-ccpp writes core dumps to existing files owned by others abrt: does not validate contents of uploaded problem reports abrt: missing process environment sanitizaton in abrt-action-install-debuginfo-to-abrt-cache abrt: Various race-conditions and symlink issues found in abrt&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1210</guid>
    </item>
  </channel>
</rss>
