<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 12:36:21 +0000</lastBuildDate>
    <item>
      <title>ALSA-2021:4326 — Moderate: libX11 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2021:4326</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libX11, AlmaLinux:8: libX11-common, AlmaLinux:8: libX11-devel, AlmaLinux:8: libX11-xcb&lt;/p&gt;
&lt;p&gt;The libX11 packages contain the core X11 protocol client library.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libX11: missing request length checks (CVE-2021-31535)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libX11, AlmaLinux:8: libX11-common, AlmaLinux:8: libX11-devel, AlmaLinux:8: libX11-xcb&lt;/p&gt;
&lt;p&gt;The libX11 packages contain the core X11 protocol client library.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libX11: missing request length checks (CVE-2021-31535)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2021:4326</guid>
    </item>
    <item>
      <title>bdu:2021-02747</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-02747</link>
      <description>bdu:2021-02747</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-02747</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2021-31535 — CVE-2021-31535 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2021-31535</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2021-31535</guid>
    </item>
    <item>
      <title>certfr-2021-avi-850 — De multiples vulnérabilités ont été découvertes dans IBM QRadar. Elles
permettent à un attaquant de provoquer un déni d…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-850</link>
      <description>certfr-2021-avi-850</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-850</guid>
    </item>
    <item>
      <title>EUVD-2026-27509</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-27509</link>
      <description>EUVD-2026-27509</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-27509</guid>
    </item>
    <item>
      <title>fkie_cve-2021-31535</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-31535</link>
      <description>&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-31535</guid>
    </item>
    <item>
      <title>GHSA-3vp2-rf63-rc8p</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3vp2-rf63-rc8p</link>
      <description>&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3vp2-rf63-rc8p</guid>
    </item>
    <item>
      <title>gsd-2021-31535</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-31535</link>
      <description>gsd-2021-31535</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-31535</guid>
    </item>
    <item>
      <title>OESA-2021-1235 — libX11 security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1235</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libX11&lt;/p&gt;
&lt;p&gt;Core X11 protocol client library.&#13;
&#13;
Security Fix(es):&#13;
&#13;
LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.(CVE-2021-31535)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libX11&lt;/p&gt;
&lt;p&gt;Core X11 protocol client library.&#13;
&#13;
Security Fix(es):&#13;
&#13;
LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.(CVE-2021-31535)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1235</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0807-1 — Security update for libX11</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0807-1</link>
      <description>&lt;p&gt;Security update for libX11&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libX11&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0807-1</guid>
    </item>
    <item>
      <title>RHBA-2021:3472 — Red Hat Bug Fix Advisory: Red Hat Ansible Tower 3.8.4-1 - Container</title>
      <link>https://cve.radiocsirt.org/vuln/rhba-2021:3472</link>
      <description>&lt;p&gt;nginx: Off-by-one in ngx_resolver_copy() when labels are followed by a pointer to a root domain name libX11: missing request length checks postgresql: Buffer overrun from integer overflow in array subscripting calculations postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;nginx: Off-by-one in ngx_resolver_copy() when labels are followed by a pointer to a root domain name libX11: missing request length checks postgresql: Buffer overrun from integer overflow in array subscripting calculations postgresql: Memory disclosure in INSERT ... ON CONFLICT ... DO UPDATE&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhba-2021:3472</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:14748-1 — Security update for xorg-x11-libX11</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:14748-1</link>
      <description>&lt;p&gt;Security update for xorg-x11-libX11&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for xorg-x11-libX11&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:14748-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-31535</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31535</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libx11, Ubuntu:Pro:16.04:LTS: libx11, Ubuntu:18.04:LTS: libx11, Ubuntu:20.04:LTS: libx11&lt;/p&gt;
&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libx11, Ubuntu:Pro:16.04:LTS: libx11, Ubuntu:18.04:LTS: libx11, Ubuntu:20.04:LTS: libx11&lt;/p&gt;
&lt;p&gt;LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. The libX11 XLookupColor request (intended for server-side color lookup) contains a flaw allowing a client to send color-name requests with a name longer than the maximum size allowed by the protocol (and also longer than the maximum packet size for normal-sized packets). The user-controlled data exceeding the maximum size is then interpreted by the server as additional X protocol requests and executed, e.g., to disable X server authorization completely. For example, if the victim encounters malicious terminal control sequences for color codes, then the attacker may be able to take full control of the running graphical session.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-31535</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0063 — Juniper Junos Space: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063</link>
      <description>&lt;p&gt;Ein Angreifer aus dem angrenzenden Netzwerk oder ein entfernter anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Juniper Junos Space ausnutzen, um Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, beliebigen Code auszuführen und seine Privilegien zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer aus dem angrenzenden Netzwerk oder ein entfernter anonymer, authentisierter oder lokaler Angreifer kann mehrere Schwachstellen in Juniper Junos Space ausnutzen, um Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand auszulösen, beliebigen Code auszuführen und seine Privilegien zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0063</guid>
    </item>
  </channel>
</rss>
