<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 09:27:31 +0000</lastBuildDate>
    <item>
      <title>ALSA-2021:0558 — Important: kernel security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2021:0558</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free (CVE-2020-29661)&lt;/p&gt;
&lt;p&gt;* kernel: performance counters race condition use-after-free (CVE-2020-14351)&lt;/p&gt;
&lt;p&gt;* kernel: ICMP rate limiting can be used for DNS poisoning attack (CVE-2020-25705)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* Final fixes + drop alpha_support flag requirement for Tigerlake (BZ#1882620)&lt;/p&gt;
&lt;p&gt;* OVS complains Invalid Argument on TCP packets going into conntrack (BZ#1892744)&lt;/p&gt;
&lt;p&gt;* BUG: using smp_processor_id() in preemptible [00000000] code: handler106/3082 (BZ#1893281)&lt;/p&gt;
&lt;p&gt;* Icelake performance - add  intel_idle: Customize IceLake server support  to AlmaLinux-8 (BZ#1897183)&lt;/p&gt;
&lt;p&gt;* [mlx5] IPV6 TOS rewrite flows are not getting offloaded in HW (BZ#1897688)&lt;/p&gt;
&lt;p&gt;* AlmaLinux 8.3 SAS - multipathd fails to re-establish paths during controller random reset (BZ#1900112)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.3 Beta - AlmaLinux8.3 hangs on dbginfo.sh execution, crash dump generated (mm-) (BZ#1903019)&lt;/p&gt;
&lt;p&gt;* Win10 guest automatic reboot after migration in Win10 and WSL2 on AMD hosts (BZ#1905084)&lt;/p&gt;
&lt;p&gt;* block, dm: fix IO splitting for stacked devices (BZ#1905136)&lt;/p&gt;
&lt;p&gt;* Failed to hotplug scsi-hd disks (BZ#1905214)&lt;/p&gt;
&lt;p&gt;* PCI quirk needed to prevent GPU hang (BZ#1906516)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.2 -…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free (CVE-2020-29661)&lt;/p&gt;
&lt;p&gt;* kernel: performance counters race condition use-after-free (CVE-2020-14351)&lt;/p&gt;
&lt;p&gt;* kernel: ICMP rate limiting can be used for DNS poisoning attack (CVE-2020-25705)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* Final fixes + drop alpha_support flag requirement for Tigerlake (BZ#1882620)&lt;/p&gt;
&lt;p&gt;* OVS complains Invalid Argument on TCP packets going into conntrack (BZ#1892744)&lt;/p&gt;
&lt;p&gt;* BUG: using smp_processor_id() in preemptible [00000000] code: handler106/3082 (BZ#1893281)&lt;/p&gt;
&lt;p&gt;* Icelake performance - add  intel_idle: Customize IceLake server support  to AlmaLinux-8 (BZ#1897183)&lt;/p&gt;
&lt;p&gt;* [mlx5] IPV6 TOS rewrite flows are not getting offloaded in HW (BZ#1897688)&lt;/p&gt;
&lt;p&gt;* AlmaLinux 8.3 SAS - multipathd fails to re-establish paths during controller random reset (BZ#1900112)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.3 Beta - AlmaLinux8.3 hangs on dbginfo.sh execution, crash dump generated (mm-) (BZ#1903019)&lt;/p&gt;
&lt;p&gt;* Win10 guest automatic reboot after migration in Win10 and WSL2 on AMD hosts (BZ#1905084)&lt;/p&gt;
&lt;p&gt;* block, dm: fix IO splitting for stacked devices (BZ#1905136)&lt;/p&gt;
&lt;p&gt;* Failed to hotplug scsi-hd disks (BZ#1905214)&lt;/p&gt;
&lt;p&gt;* PCI quirk needed to prevent GPU hang (BZ#1906516)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.2 -…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2021:0558</guid>
    </item>
    <item>
      <title>bdu:2020-05832</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-05832</link>
      <description>bdu:2020-05832</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-05832</guid>
    </item>
    <item>
      <title>certfr-2020-avi-711 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
SUSE. Elles permettent à un attaquant de provoqu…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2020-avi-711</link>
      <description>certfr-2020-avi-711</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2020-avi-711</guid>
    </item>
    <item>
      <title>cnvd-2021-43367</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-43367</link>
      <description>cnvd-2021-43367</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-43367</guid>
    </item>
    <item>
      <title>EUVD-2026-42368</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42368</link>
      <description>EUVD-2026-42368</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42368</guid>
    </item>
    <item>
      <title>fkie_cve-2020-14351</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-14351</link>
      <description>&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-14351</guid>
    </item>
    <item>
      <title>GHSA-969c-xcr8-6f87</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-969c-xcr8-6f87</link>
      <description>&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-969c-xcr8-6f87</guid>
    </item>
    <item>
      <title>gsd-2020-14351</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-14351</link>
      <description>gsd-2020-14351</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-14351</guid>
    </item>
    <item>
      <title>msrc_CVE-2020-14351 — A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local att…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2020-14351</link>
      <description>msrc_CVE-2020-14351</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2020-14351</guid>
    </item>
    <item>
      <title>OESA-2021-1003 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1003</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: kernel, openEuler:20.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-14351)&lt;/p&gt;
&lt;p&gt;An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference, as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device, aka CID-073d0552ead5.(CVE-2020-27675)&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access out of bounds. The highest threat from this vulnerability is to data confidentiality.(CVE-2020-25656)&lt;/p&gt;
&lt;p&gt;Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.(CVE-2020-12352)&lt;/p&gt;
&lt;p&gt;A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.(CVE-2020-29661)&lt;/p&gt;
&lt;p&gt;A flaw was found in the w…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS: kernel, openEuler:20.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.(CVE-2020-14351)&lt;/p&gt;
&lt;p&gt;An issue was discovered in the Linux kernel through 5.9.1, as used with Xen through 4.14.x. drivers/xen/events/events_base.c allows event-channel removal during the event-handling loop (a race condition). This can cause a use-after-free or NULL pointer dereference, as demonstrated by a dom0 crash via events for an in-reconfiguration paravirtualized device, aka CID-073d0552ead5.(CVE-2020-27675)&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free was found in the way the console subsystem was using ioctls KDGKBSENT and KDSKBSENT. A local user could use this flaw to get read memory access out of bounds. The highest threat from this vulnerability is to data confidentiality.(CVE-2020-25656)&lt;/p&gt;
&lt;p&gt;Improper access control in BlueZ may allow an unauthenticated user to potentially enable information disclosure via adjacent access.(CVE-2020-12352)&lt;/p&gt;
&lt;p&gt;A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows a use-after-free attack against TIOCSPGRP, aka CID-54ffccbf053b.(CVE-2020-29661)&lt;/p&gt;
&lt;p&gt;A flaw was found in the w…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1003</guid>
    </item>
    <item>
      <title>openSUSE-SU-2020:1906-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2020:1906-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2020:1906-1</guid>
    </item>
    <item>
      <title>RHSA-2021:0537 — Red Hat Security Advisory: kernel-rt security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:0537</link>
      <description>&lt;p&gt;kernel: performance counters race condition use-after-free kernel: ICMP rate limiting can be used for DNS poisoning attack kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: performance counters race condition use-after-free kernel: ICMP rate limiting can be used for DNS poisoning attack kernel: locking issue in drivers/tty/tty_jobctrl.c can lead to an use-after-free&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:0537</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:3122-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:3122-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:3122-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-14351</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14351</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:14.04:LTS: linux, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe and 64 more&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:14.04:LTS: linux, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure, Ubuntu:16.04:LTS: linux-gcp, Ubuntu:16.04:LTS: linux-hwe and 64 more&lt;/p&gt;
&lt;p&gt;A flaw was found in the Linux kernel. A use-after-free memory flaw was found in the perf subsystem allowing a local attacker with permission to monitor perf events to corrupt memory and possibly escalate privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-14351</guid>
    </item>
  </channel>
</rss>
