<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:15:24 +0000</lastBuildDate>
    <item>
      <title>bdu:2022-05945</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-05945</link>
      <description>bdu:2022-05945</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-05945</guid>
    </item>
    <item>
      <title>cnvd-2018-00646</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-00646</link>
      <description>cnvd-2018-00646</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-00646</guid>
    </item>
    <item>
      <title>EUVD-2026-79324</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-79324</link>
      <description>EUVD-2026-79324</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-79324</guid>
    </item>
    <item>
      <title>fkie_cve-2017-16997</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-16997</link>
      <description>&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-16997</guid>
    </item>
    <item>
      <title>GHSA-q5m3-4jcg-c4rf</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q5m3-4jcg-c4rf</link>
      <description>&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q5m3-4jcg-c4rf</guid>
    </item>
    <item>
      <title>gsd-2017-16997</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-16997</link>
      <description>gsd-2017-16997</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-16997</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10792-1 — glibc-2.34-1.2 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10792-1</link>
      <description>&lt;p&gt;glibc-2.34-1.2 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;glibc-2.34-1.2 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10792-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0074-1 — Security update for glibc</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0074-1</link>
      <description>&lt;p&gt;Security update for glibc&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for glibc&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0074-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-16997</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-16997</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: eglibc, Ubuntu:16.04:LTS: glibc&lt;/p&gt;
&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: eglibc, Ubuntu:16.04:LTS: glibc&lt;/p&gt;
&lt;p&gt;elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the &amp;#34;./&amp;#34; directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-16997</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-1478 — GNU libc: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1478</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in GNU libc ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes oder mit administrative Privilegien auszuführen oder einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in GNU libc ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes oder mit administrative Privilegien auszuführen oder einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-1478</guid>
    </item>
  </channel>
</rss>
