<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 21:26:25 +0000</lastBuildDate>
    <item>
      <title>bdu:2016-00661</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2016-00661</link>
      <description>bdu:2016-00661</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2016-00661</guid>
    </item>
    <item>
      <title>certfr-2016-avi-076 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;OpenSSL&lt;/span&gt;. Elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2016-avi-076</link>
      <description>certfr-2016-avi-076</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2016-avi-076</guid>
    </item>
    <item>
      <title>cnvd-2016-01367</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2016-01367</link>
      <description>cnvd-2016-01367</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2016-01367</guid>
    </item>
    <item>
      <title>EUVD-2026-81618</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-81618</link>
      <description>EUVD-2026-81618</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-81618</guid>
    </item>
    <item>
      <title>fkie_cve-2016-0800</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2016-0800</link>
      <description>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2016-0800</guid>
    </item>
    <item>
      <title>GHSA-fqw2-3v24-gc79</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fqw2-3v24-gc79</link>
      <description>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fqw2-3v24-gc79</guid>
    </item>
    <item>
      <title>gsd-2016-0800</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2016-0800</link>
      <description>gsd-2016-0800</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2016-0800</guid>
    </item>
    <item>
      <title>ICSA-16-103-03C — Siemens Industrial Products DROWN Vulnerability (Update C)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-16-103-03c</link>
      <description>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before 1.0.2g and other products, requires a server to send a ServerVerify message before establishing that a client possesses certain plaintext RSA data, which makes it easier for remote attackers to decrypt TLS ciphertext data by leveraging a Bleichenbacher RSA padding oracle, aka a &amp;#34;DROWN&amp;#34; attack.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-16-103-03c</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10271-1 — libopenssl-devel-1.0.2j-2.2 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10271-1</link>
      <description>&lt;p&gt;libopenssl-devel-1.0.2j-2.2 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libopenssl-devel-1.0.2j-2.2 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10271-1</guid>
    </item>
    <item>
      <title>RHSA-2016:0302 — Red Hat Security Advisory: openssl security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2016:0302</link>
      <description>&lt;p&gt;OpenSSL: SSLv2 doesn&amp;#39;t block disabled ciphers OpenSSL: BN_hex2bn/BN_dec2bn NULL pointer deref/heap corruption SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;OpenSSL: SSLv2 doesn&amp;#39;t block disabled ciphers OpenSSL: BN_hex2bn/BN_dec2bn NULL pointer deref/heap corruption SSL/TLS: Cross-protocol attack on TLS using SSLv2 (DROWN)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2016:0302</guid>
    </item>
    <item>
      <title>SUSE-SU-2016:0617-1 — Security update for openssl</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2016:0617-1</link>
      <description>&lt;p&gt;Security update for openssl&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for openssl&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2016:0617-1</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0427 — OpenSSL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0427</link>
      <description>&lt;p&gt;Ein anonymer, lokaler bzw. entfernter Angreifer kann mehrere Schwachstellen in OpenSSL, Ubuntu Linux, Debian Linux Wheezy (7.0), Debian Linux Jessie (8.0), Red Hat Enterprise Linux HPC Node, Red Hat Enterprise Linux Server EUS, Red Hat Enterprise Linux Workstation, Red Hat Enterprise Linux Server, Red Hat Enterprise Linux Desktop, Red Hat Enterprise Linux Server AUS, Arista EOS und Red Hat Enterprise Linux ausnutzen, um Informationen offenzulegen, beliebigen Programcode mit den Rechten des Dienstes auszuführen oder um einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein anonymer, lokaler bzw. entfernter Angreifer kann mehrere Schwachstellen in OpenSSL, Ubuntu Linux, Debian Linux Wheezy (7.0), Debian Linux Jessie (8.0), Red Hat Enterprise Linux HPC Node, Red Hat Enterprise Linux Server EUS, Red Hat Enterprise Linux Workstation, Red Hat Enterprise Linux Server, Red Hat Enterprise Linux Desktop, Red Hat Enterprise Linux Server AUS, Arista EOS und Red Hat Enterprise Linux ausnutzen, um Informationen offenzulegen, beliebigen Programcode mit den Rechten des Dienstes auszuführen oder um einen Denial of Service Zustand herbeizuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0427</guid>
    </item>
  </channel>
</rss>
