<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:48:18 +0000</lastBuildDate>
    <item>
      <title>bdu:2018-01423</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2018-01423</link>
      <description>bdu:2018-01423</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2018-01423</guid>
    </item>
    <item>
      <title>certfr-2022-avi-267 — De multiples vulnérabilités ont été découvertes dans Juniper Networks
Junos Space. Elles permettent à un attaquant de p…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-267</link>
      <description>certfr-2022-avi-267</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-267</guid>
    </item>
    <item>
      <title>EUVD-2026-80004</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-80004</link>
      <description>EUVD-2026-80004</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-80004</guid>
    </item>
    <item>
      <title>fkie_cve-2017-18190</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-18190</link>
      <description>&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-18190</guid>
    </item>
    <item>
      <title>GHSA-vfqc-qhm9-65mm</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-vfqc-qhm9-65mm</link>
      <description>&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-vfqc-qhm9-65mm</guid>
    </item>
    <item>
      <title>gsd-2017-18190</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-18190</link>
      <description>gsd-2017-18190</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-18190</guid>
    </item>
    <item>
      <title>RHSA-2020:3864 — Red Hat Security Advisory: cups security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:3864</link>
      <description>&lt;p&gt;cups: DNS rebinding attacks via incorrect whitelist cups: stack-buffer-overflow in libcups&amp;#39;s asn1_get_type function cups: stack-buffer-overflow in libcups&amp;#39;s asn1_get_packed function&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cups: DNS rebinding attacks via incorrect whitelist cups: stack-buffer-overflow in libcups&amp;#39;s asn1_get_type function cups: stack-buffer-overflow in libcups&amp;#39;s asn1_get_packed function&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:3864</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:0604-1 — Security update for cups</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:0604-1</link>
      <description>&lt;p&gt;Security update for cups&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for cups&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:0604-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-18190</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-18190</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: cups, Ubuntu:16.04:LTS: cups&lt;/p&gt;
&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: cups, Ubuntu:16.04:LTS: cups&lt;/p&gt;
&lt;p&gt;A localhost.localdomain whitelist entry in valid_host() in scheduler/client.c in CUPS before 2.2.2 allows remote attackers to execute arbitrary IPP commands by sending POST requests to the CUPS daemon in conjunction with DNS rebinding. The localhost.localdomain name is often resolved via a DNS server (neither the OS nor the web browser is responsible for ensuring that localhost.localdomain is 127.0.0.1).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-18190</guid>
    </item>
  </channel>
</rss>
