<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:18:24 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-01847</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-01847</link>
      <description>bdu:2020-01847</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-01847</guid>
    </item>
    <item>
      <title>EUVD-2026-55559</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-55559</link>
      <description>EUVD-2026-55559</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-55559</guid>
    </item>
    <item>
      <title>fkie_cve-2019-13173</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-13173</link>
      <description>&lt;p&gt;fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;#39;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;#39;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-13173</guid>
    </item>
    <item>
      <title>GHSA-xf7w-r453-m56c — Arbitrary File Overwrite in fstream</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xf7w-r453-m56c</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: fstream&lt;/p&gt;
&lt;p&gt;Versions of `fstream` prior to 1.0.12 are vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system and a file that matches the hardlink will overwrite the system&amp;#39;s file with the contents of the extracted file. The `fstream.DirWriter()` function is vulnerable.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Upgrade to version 1.0.12 or later.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: fstream&lt;/p&gt;
&lt;p&gt;Versions of `fstream` prior to 1.0.12 are vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system and a file that matches the hardlink will overwrite the system&amp;#39;s file with the contents of the extracted file. The `fstream.DirWriter()` function is vulnerable.&lt;/p&gt;
&lt;p&gt;## Recommendation&lt;/p&gt;
&lt;p&gt;Upgrade to version 1.0.12 or later.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xf7w-r453-m56c</guid>
    </item>
    <item>
      <title>gsd-2019-13173</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-13173</link>
      <description>gsd-2019-13173</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-13173</guid>
    </item>
    <item>
      <title>OESA-2022-1584 — nodejs-fstream security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2022-1584</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: nodejs-fstream, openEuler:20.03-LTS-SP2: nodejs-fstream, openEuler:20.03-LTS-SP3: nodejs-fstream&lt;/p&gt;
&lt;p&gt;Provides advanced file system stream objects for Node.js.  These objects are like FS streams, but with stat on them, and support directories and symbolic links, as well as normal files.  Also, you can use them to set the stats on a file, even if you don&amp;amp;apos;t change its contents, or to create a symlink, etc.&#13;
&#13;
Security Fix(es):&#13;
&#13;
fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;amp;apos;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.(CVE-2019-13173)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: nodejs-fstream, openEuler:20.03-LTS-SP2: nodejs-fstream, openEuler:20.03-LTS-SP3: nodejs-fstream&lt;/p&gt;
&lt;p&gt;Provides advanced file system stream objects for Node.js.  These objects are like FS streams, but with stat on them, and support directories and symbolic links, as well as normal files.  Also, you can use them to set the stats on a file, even if you don&amp;amp;apos;t change its contents, or to create a symlink, etc.&#13;
&#13;
Security Fix(es):&#13;
&#13;
fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;amp;apos;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.(CVE-2019-13173)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2022-1584</guid>
    </item>
    <item>
      <title>openSUSE-SU-2019:1846-1 — Security update for nodejs10</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2019:1846-1</link>
      <description>&lt;p&gt;Security update for nodejs10&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for nodejs10&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2019:1846-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2019:14246-1 — Security update for Mozilla Firefox</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2019:14246-1</link>
      <description>&lt;p&gt;Security update for Mozilla Firefox&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for Mozilla Firefox&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2019:14246-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-13173</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13173</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: node-fstream, Ubuntu:Pro:16.04:LTS: node-fstream, Ubuntu:18.04:LTS: node-fstream&lt;/p&gt;
&lt;p&gt;fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;#39;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: node-fstream, Ubuntu:Pro:16.04:LTS: node-fstream, Ubuntu:18.04:LTS: node-fstream&lt;/p&gt;
&lt;p&gt;fstream before 1.0.12 is vulnerable to Arbitrary File Overwrite. Extracting tarballs containing a hardlink to a file that already exists in the system, and a file that matches the hardlink, will overwrite the system&amp;#39;s file with the contents of the extracted file. The fstream.DirWriter() function is vulnerable.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-13173</guid>
    </item>
  </channel>
</rss>
