<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:19:02 +0000</lastBuildDate>
    <item>
      <title>bdu:2020-04514</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-04514</link>
      <description>bdu:2020-04514</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-04514</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2019-20388 — CVE-2019-20388 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2019-20388</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2019-20388</guid>
    </item>
    <item>
      <title>certfr-2021-avi-589 — De multiples vulnérabilités ont été découvertes dans Juniper Junos Space
Log Collector. Certaines d'entre elles permett…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-589</link>
      <description>certfr-2021-avi-589</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-589</guid>
    </item>
    <item>
      <title>cnvd-2020-07216</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-07216</link>
      <description>cnvd-2020-07216</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-07216</guid>
    </item>
    <item>
      <title>EUVD-2026-263947</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-263947</link>
      <description>EUVD-2026-263947</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-263947</guid>
    </item>
    <item>
      <title>fkie_cve-2019-20388</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-20388</link>
      <description>&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-20388</guid>
    </item>
    <item>
      <title>GHSA-7g45-9xmp-g2w6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7g45-9xmp-g2w6</link>
      <description>&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7g45-9xmp-g2w6</guid>
    </item>
    <item>
      <title>gsd-2019-20388</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-20388</link>
      <description>gsd-2019-20388</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-20388</guid>
    </item>
    <item>
      <title>ICSA-21-336-06 — Hitachi Energy APM Edge</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-21-336-06</link>
      <description>&lt;p&gt;An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a crash and a denial of service attack. A server is only vulnerable if it has TLSv1.2 and renegotiation enabled (which is the default configuration). OpenSSL TLS clients are not impacted by this issue. All OpenSSL 1.1.1 versions are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j). Hitachi Energy is aware of public reports of this vulnerability in the following open-source software components: OpenSSL, LibSSL, libxml2 and GRUB2 bootloader. The vulnerability also affects some APM Edge products. An attacker who successfully exploits this vulnerability could cause the product to become inaccessible. SEE NVD for full Description. In situations where an attacker receives automated notification of the success or failure of a decryption attempt an attacker, after sending a very large number of messages to be decrypted, can recover a CMS/PKCS7 transported encryption key or decrypt any RSA encrypted message that was encrypted with the public RSA key, using a Bleichenbacher padding oracle attack. Applications are not a…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a crash and a denial of service attack. A server is only vulnerable if it has TLSv1.2 and renegotiation enabled (which is the default configuration). OpenSSL TLS clients are not impacted by this issue. All OpenSSL 1.1.1 versions are affected by this issue. Users of these versions should upgrade to OpenSSL 1.1.1k. OpenSSL 1.0.2 is not impacted by this issue. Fixed in OpenSSL 1.1.1k (Affected 1.1.1-1.1.1j). Hitachi Energy is aware of public reports of this vulnerability in the following open-source software components: OpenSSL, LibSSL, libxml2 and GRUB2 bootloader. The vulnerability also affects some APM Edge products. An attacker who successfully exploits this vulnerability could cause the product to become inaccessible. SEE NVD for full Description. In situations where an attacker receives automated notification of the success or failure of a decryption attempt an attacker, after sending a very large number of messages to be decrypted, can recover a CMS/PKCS7 transported encryption key or decrypt any RSA encrypted message that was encrypted with the public RSA key, using a Bleichenbacher padding oracle attack. Applications are not a…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-21-336-06</guid>
    </item>
    <item>
      <title>msrc_CVE-2019-20388 — xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2019-20388</link>
      <description>msrc_CVE-2019-20388</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2019-20388</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:0681-1 — Security update for libxml2</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:0681-1</link>
      <description>&lt;p&gt;Security update for libxml2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libxml2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:0681-1</guid>
    </item>
    <item>
      <title>RHSA-2020:2644 — Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.37 SP3 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2020:2644</link>
      <description>&lt;p&gt;expat: large number of colons in input makes parser consume high amount of resources, leading to DoS httpd: mod_http2: read-after-free on a string compare httpd: mod_http2: possible crash on late upgrade expat: heap-based buffer over-read via crafted XML input libxml2: memory leak in xmlParseBalancedChunkMemoryRecover in parser.c libxml2: memory leak in xmlSchemaPreRun in xmlschemas.c httpd: mod_proxy_ftp use of uninitialized value libxml2: infinite loop in xmlStringLenDecodeEntities in some end-of-file situations nghttp2: overly large SETTINGS frames can lead to DoS&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;expat: large number of colons in input makes parser consume high amount of resources, leading to DoS httpd: mod_http2: read-after-free on a string compare httpd: mod_http2: possible crash on late upgrade expat: heap-based buffer over-read via crafted XML input libxml2: memory leak in xmlParseBalancedChunkMemoryRecover in parser.c libxml2: memory leak in xmlSchemaPreRun in xmlschemas.c httpd: mod_proxy_ftp use of uninitialized value libxml2: infinite loop in xmlStringLenDecodeEntities in some end-of-file situations nghttp2: overly large SETTINGS frames can lead to DoS&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2020:2644</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:1299-1 — Security update for libxml2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:1299-1</link>
      <description>&lt;p&gt;Security update for libxml2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libxml2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:1299-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-20388</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20388</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libxml2, Ubuntu:Pro:16.04:LTS: libxml2, Ubuntu:18.04:LTS: libxml2&lt;/p&gt;
&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libxml2, Ubuntu:Pro:16.04:LTS: libxml2, Ubuntu:18.04:LTS: libxml2&lt;/p&gt;
&lt;p&gt;xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-20388</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1614 — Tenable Security Nessus Network Monitor: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1614</link>
      <description>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Tenable Security Nessus Network Monitor ausnutzen, um beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Tenable Security Nessus Network Monitor ausnutzen, um beliebigen Code auszuführen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1614</guid>
    </item>
  </channel>
</rss>
