<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 15:57:26 +0000</lastBuildDate>
    <item>
      <title>bdu:2019-04408</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2019-04408</link>
      <description>bdu:2019-04408</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2019-04408</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2019-0217 — CVE-2019-0217 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2019-0217</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2019-0217</guid>
    </item>
    <item>
      <title>certfr-2019-avi-141 — De multiples vulnérabilités ont été découvertes dans Apache Httpd.
Certaines d'entre elles permettent à un attaquant de…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2019-avi-141</link>
      <description>certfr-2019-avi-141</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2019-avi-141</guid>
    </item>
    <item>
      <title>cnvd-2019-08945</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2019-08945</link>
      <description>cnvd-2019-08945</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2019-08945</guid>
    </item>
    <item>
      <title>EUVD-2026-48388</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-48388</link>
      <description>EUVD-2026-48388</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-48388</guid>
    </item>
    <item>
      <title>fkie_cve-2019-0217</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-0217</link>
      <description>&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-0217</guid>
    </item>
    <item>
      <title>GHSA-q29r-xr2f-g7j5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q29r-xr2f-g7j5</link>
      <description>&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q29r-xr2f-g7j5</guid>
    </item>
    <item>
      <title>gsd-2019-0217</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-0217</link>
      <description>gsd-2019-0217</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-0217</guid>
    </item>
    <item>
      <title>openSUSE-SU-2019:1209-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2019:1209-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2019:1209-1</guid>
    </item>
    <item>
      <title>RHSA-2019:3932 — Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.37 Security Release on RHEL 6</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2019:3932</link>
      <description>&lt;p&gt;openssl: timing side channel attack in the DSA signature algorithm openssl: RSA key generation cache timing vulnerability in crypto/rsa/rsa_gen.c allows attackers to recover private keys openssl: Side-channel vulnerability on SMT/Hyper-Threading architectures (PortSmash) httpd: mod_http2: DoS via slow, unneeded request bodies httpd: mod_session_cookie does not respect expiry time httpd: mod_http2: read-after-free on a string compare httpd: mod_http2: possible crash on late upgrade httpd: mod_auth_digest: access control bypass due to race condition HTTP/2: large amount of data requests leads to denial of service HTTP/2: flood using PRIORITY frames results in excessive resource consumption HTTP/2: 0-length headers lead to denial of service HTTP/2: request for large response leads to denial of service&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;openssl: timing side channel attack in the DSA signature algorithm openssl: RSA key generation cache timing vulnerability in crypto/rsa/rsa_gen.c allows attackers to recover private keys openssl: Side-channel vulnerability on SMT/Hyper-Threading architectures (PortSmash) httpd: mod_http2: DoS via slow, unneeded request bodies httpd: mod_session_cookie does not respect expiry time httpd: mod_http2: read-after-free on a string compare httpd: mod_http2: possible crash on late upgrade httpd: mod_auth_digest: access control bypass due to race condition HTTP/2: large amount of data requests leads to denial of service HTTP/2: flood using PRIORITY frames results in excessive resource consumption HTTP/2: 0-length headers lead to denial of service HTTP/2: request for large response leads to denial of service&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2019:3932</guid>
    </item>
    <item>
      <title>SUSE-SU-2019:0873-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2019:0873-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2019:0873-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-0217</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-0217</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2, Ubuntu:16.04:LTS: apache2, Ubuntu:18.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2, Ubuntu:16.04:LTS: apache2, Ubuntu:18.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;In Apache HTTP Server 2.4 release 2.4.38 and prior, a race condition in mod_auth_digest when running in a threaded server could allow a user with valid credentials to authenticate using another username, bypassing configured access control restrictions.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-0217</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2047 — Apache HTTP Server: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2047</link>
      <description>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen im Apache HTTP Server ausnutzen, um seine Rechte zu erweitern, Sicherheitsrestriktionen zu umgehen oder um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen im Apache HTTP Server ausnutzen, um seine Rechte zu erweitern, Sicherheitsrestriktionen zu umgehen oder um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2047</guid>
    </item>
  </channel>
</rss>
