<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:40:37 +0000</lastBuildDate>
    <item>
      <title>bdu:2015-10929</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2015-10929</link>
      <description>bdu:2015-10929</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2015-10929</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2015-3185 — CVE-2015-3185 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2015-3185</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2015-3185</guid>
    </item>
    <item>
      <title>certfr-2015-avi-355 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apple OS X&lt;/span&gt;. Certaines d'entre elles perm…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2015-avi-355</link>
      <description>certfr-2015-avi-355</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2015-avi-355</guid>
    </item>
    <item>
      <title>cnvd-2015-04944</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2015-04944</link>
      <description>cnvd-2015-04944</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2015-04944</guid>
    </item>
    <item>
      <title>EUVD-2026-91672</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-91672</link>
      <description>EUVD-2026-91672</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-91672</guid>
    </item>
    <item>
      <title>fkie_cve-2015-3185</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2015-3185</link>
      <description>&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2015-3185</guid>
    </item>
    <item>
      <title>GHSA-5fv4-m5x3-j32p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5fv4-m5x3-j32p</link>
      <description>&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5fv4-m5x3-j32p</guid>
    </item>
    <item>
      <title>gsd-2015-3185</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2015-3185</link>
      <description>gsd-2015-3185</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2015-3185</guid>
    </item>
    <item>
      <title>RHSA-2015:1666 — Red Hat Security Advisory: httpd24-httpd security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1666</link>
      <description>&lt;p&gt;httpd: Possible mod_lua crash due to websocket bug httpd: NULL pointer dereference crash with ErrorDocument 400 pointing to a local URL-path httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: Possible mod_lua crash due to websocket bug httpd: NULL pointer dereference crash with ErrorDocument 400 pointing to a local URL-path httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1666</guid>
    </item>
    <item>
      <title>RHSA-2015:1667 — Red Hat Security Advisory: httpd security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1667</link>
      <description>&lt;p&gt;httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: HTTP request smuggling attack against chunked request parser httpd: ap_some_auth_required() does not properly indicate authenticated request in 2.4&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1667</guid>
    </item>
    <item>
      <title>SUSE-SU-2015:1851-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2015:1851-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2015:1851-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2015-3185</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-3185</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;The ap_some_auth_required function in server/request.c in the Apache HTTP Server 2.4.x before 2.4.14 does not consider that a Require directive may be associated with an authorization setting rather than an authentication setting, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging the presence of a module that relies on the 2.2 API behavior.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2015-3185</guid>
    </item>
  </channel>
</rss>
