<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 15:15:29 +0000</lastBuildDate>
    <item>
      <title>cnvd-2017-22995</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-22995</link>
      <description>cnvd-2017-22995</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-22995</guid>
    </item>
    <item>
      <title>EUVD-2026-174866</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-174866</link>
      <description>EUVD-2026-174866</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-174866</guid>
    </item>
    <item>
      <title>fkie_cve-2017-5640</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-5640</link>
      <description>&lt;p&gt;It was noticed that a malicious process impersonating an Impala daemon in Apache Impala (incubating) 2.7.0 to 2.8.0 could cause Impala daemons to skip authentication checks when Kerberos is enabled (but TLS is not). If the malicious server responds with &amp;#39;COMPLETE&amp;#39; before the SASL handshake has completed, the client will consider the handshake as completed even though no exchange of credentials has happened.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was noticed that a malicious process impersonating an Impala daemon in Apache Impala (incubating) 2.7.0 to 2.8.0 could cause Impala daemons to skip authentication checks when Kerberos is enabled (but TLS is not). If the malicious server responds with &amp;#39;COMPLETE&amp;#39; before the SASL handshake has completed, the client will consider the handshake as completed even though no exchange of credentials has happened.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-5640</guid>
    </item>
    <item>
      <title>GHSA-pprr-66x6-xjr8</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-pprr-66x6-xjr8</link>
      <description>&lt;p&gt;It was noticed that a malicious process impersonating an Impala daemon in Apache Impala (incubating) 2.7.0 to 2.8.0 could cause Impala daemons to skip authentication checks when Kerberos is enabled (but TLS is not). If the malicious server responds with &amp;#39;COMPLETE&amp;#39; before the SASL handshake has completed, the client will consider the handshake as completed even though no exchange of credentials has happened.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;It was noticed that a malicious process impersonating an Impala daemon in Apache Impala (incubating) 2.7.0 to 2.8.0 could cause Impala daemons to skip authentication checks when Kerberos is enabled (but TLS is not). If the malicious server responds with &amp;#39;COMPLETE&amp;#39; before the SASL handshake has completed, the client will consider the handshake as completed even though no exchange of credentials has happened.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-pprr-66x6-xjr8</guid>
    </item>
    <item>
      <title>gsd-2017-5640</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-5640</link>
      <description>gsd-2017-5640</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-5640</guid>
    </item>
  </channel>
</rss>
