<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:50:31 +0000</lastBuildDate>
    <item>
      <title>BIT-etcd-2020-15112 — Improper Input Validation in etcd</title>
      <link>https://cve.radiocsirt.org/vuln/bit-etcd-2020-15112</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: etcd&lt;/p&gt;
&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: etcd&lt;/p&gt;
&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-etcd-2020-15112</guid>
    </item>
    <item>
      <title>certfr-2022-avi-591 — De multiples vulnérabilités ont été découvertes dans les produits IBM.
Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</link>
      <description>certfr-2022-avi-591</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-591</guid>
    </item>
    <item>
      <title>cnvd-2020-47587</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2020-47587</link>
      <description>cnvd-2020-47587</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2020-47587</guid>
    </item>
    <item>
      <title>EUVD-2026-42694</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-42694</link>
      <description>EUVD-2026-42694</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-42694</guid>
    </item>
    <item>
      <title>fkie_cve-2020-15112</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2020-15112</link>
      <description>&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2020-15112</guid>
    </item>
    <item>
      <title>GHSA-m332-53r6-2w93 — etcd's WAL `ReadAll`  method vulnerable to an entry with large index causing panic</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m332-53r6-2w93</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: go.etcd.io/etcd/v3&lt;/p&gt;
&lt;p&gt;### Vulnerability type
Data Validation&lt;/p&gt;
&lt;p&gt;### Detail
In the ReadAll method in wal/wal.go, it is possible to have an entry index greater then the number of entries. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;
&lt;p&gt;### References
Find out more on this vulnerability in the [security audit report](https://github.com/etcd-io/etcd/blob/master/security/SECURITY_AUDIT.pdf)&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory:
* Contact the [etcd security committee](https://github.com/etcd-io/etcd/blob/master/security/security-release-process.md)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: go.etcd.io/etcd/v3&lt;/p&gt;
&lt;p&gt;### Vulnerability type
Data Validation&lt;/p&gt;
&lt;p&gt;### Detail
In the ReadAll method in wal/wal.go, it is possible to have an entry index greater then the number of entries. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;
&lt;p&gt;### References
Find out more on this vulnerability in the [security audit report](https://github.com/etcd-io/etcd/blob/master/security/SECURITY_AUDIT.pdf)&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory:
* Contact the [etcd security committee](https://github.com/etcd-io/etcd/blob/master/security/security-release-process.md)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m332-53r6-2w93</guid>
    </item>
    <item>
      <title>gsd-2020-15112</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2020-15112</link>
      <description>gsd-2020-15112</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2020-15112</guid>
    </item>
    <item>
      <title>msrc_CVE-2020-15112 — Improper Input Validation in etcd</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2020-15112</link>
      <description>msrc_CVE-2020-15112</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2020-15112</guid>
    </item>
    <item>
      <title>RHSA-2021:0916 — Red Hat Security Advisory: Red Hat OpenStack Platform 16.1.4 (etcd) security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:0916</link>
      <description>&lt;p&gt;etcd: Large slice causes panic in decodeRecord method etcd: DoS in wal/wal.go etcd: directories created via os.MkdirAll are not checked for permissions etcd: gateway can include itself as an endpoint resulting in resource exhaustion and leads to DoS etcd: improper validation of passwords allow an attacker to guess or brute-force user&amp;#39;s passwords etcd: no authentication is performed against endpoints provided in the --endpoints flag&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;etcd: Large slice causes panic in decodeRecord method etcd: DoS in wal/wal.go etcd: directories created via os.MkdirAll are not checked for permissions etcd: gateway can include itself as an endpoint resulting in resource exhaustion and leads to DoS etcd: improper validation of passwords allow an attacker to guess or brute-force user&amp;#39;s passwords etcd: no authentication is performed against endpoints provided in the --endpoints flag&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:0916</guid>
    </item>
    <item>
      <title>SUSE-SU-2020:3760-1 — Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1</link>
      <description>&lt;p&gt;Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security changes in Kubernetes, etcd, and helm; Bugfix in cri-o package&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2020:3760-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2020-15112</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15112</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: etcd, Ubuntu:Pro:18.04:LTS: etcd, Ubuntu:20.04:LTS: etcd, Ubuntu:Pro:22.04:LTS: etcd, Ubuntu:Pro:24.04:LTS: etcd, Ubuntu:25.10: etcd, Ubuntu:Pro:26.04:LTS: etcd&lt;/p&gt;
&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: etcd, Ubuntu:Pro:18.04:LTS: etcd, Ubuntu:20.04:LTS: etcd, Ubuntu:Pro:22.04:LTS: etcd, Ubuntu:Pro:24.04:LTS: etcd, Ubuntu:25.10: etcd, Ubuntu:Pro:26.04:LTS: etcd&lt;/p&gt;
&lt;p&gt;In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go. This could cause issues when WAL entries are being read during consensus as an arbitrary etcd consensus participant could go down from a runtime panic when reading the entry.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2020-15112</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0510 — IBM DB2: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</link>
      <description>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in IBM DB2 ausnutzen, um Dateien zu manipulieren, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, willkürlichen Code mit erhöhten Rechten auszuführen, Informationen falsch darzustellen und beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0510</guid>
    </item>
  </channel>
</rss>
