<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:37:50 +0000</lastBuildDate>
    <item>
      <title>ALSA-2021:2714 — Important: kernel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2021:2714</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: size_t-to-int conversion vulnerability in the filesystem layer (CVE-2021-33909)&lt;/p&gt;
&lt;p&gt;* kernel: race condition for removal of the HCI controller (CVE-2021-32399)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* pinctrl_emmitsburg: improper configuration (BZ#1963984)&lt;/p&gt;
&lt;p&gt;* [Ampere] locking/qrwlock: Fix ordering in queued_write_lock_slowpath (BZ#1964419)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.4 - [P10] [NPIV Multi queue Test kernel- 4.18.0-283.el8.ibmvfc_11022021.ppc64le] DLPAR operation fails for ibmvfc on Denali (ibmvfc/dlpar/AlmaLinux8.4) (BZ#1964697)&lt;/p&gt;
&lt;p&gt;* Every server is displaying the same power levels for all of our i40e  25G interfaces. 10G interfaces seem to be correct. Ethtool version is 5.0 (BZ#1967099)&lt;/p&gt;
&lt;p&gt;* backport fixes for Connection Tracking offload (BZ#1968679)&lt;/p&gt;
&lt;p&gt;* fm10k: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969910)&lt;/p&gt;
&lt;p&gt;* ixgbevf: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969911)&lt;/p&gt;
&lt;p&gt;* ena: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969913)&lt;/p&gt;
&lt;p&gt;* b44, bnx2, bnx2x, bnxt, tg3: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969914)&lt;/p&gt;
&lt;p&gt;* e1000, e1000e: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969915)&lt;/p&gt;
&lt;p&gt;* ice: removal…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: size_t-to-int conversion vulnerability in the filesystem layer (CVE-2021-33909)&lt;/p&gt;
&lt;p&gt;* kernel: race condition for removal of the HCI controller (CVE-2021-32399)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* pinctrl_emmitsburg: improper configuration (BZ#1963984)&lt;/p&gt;
&lt;p&gt;* [Ampere] locking/qrwlock: Fix ordering in queued_write_lock_slowpath (BZ#1964419)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.4 - [P10] [NPIV Multi queue Test kernel- 4.18.0-283.el8.ibmvfc_11022021.ppc64le] DLPAR operation fails for ibmvfc on Denali (ibmvfc/dlpar/AlmaLinux8.4) (BZ#1964697)&lt;/p&gt;
&lt;p&gt;* Every server is displaying the same power levels for all of our i40e  25G interfaces. 10G interfaces seem to be correct. Ethtool version is 5.0 (BZ#1967099)&lt;/p&gt;
&lt;p&gt;* backport fixes for Connection Tracking offload (BZ#1968679)&lt;/p&gt;
&lt;p&gt;* fm10k: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969910)&lt;/p&gt;
&lt;p&gt;* ixgbevf: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969911)&lt;/p&gt;
&lt;p&gt;* ena: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969913)&lt;/p&gt;
&lt;p&gt;* b44, bnx2, bnx2x, bnxt, tg3: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969914)&lt;/p&gt;
&lt;p&gt;* e1000, e1000e: removal of MODULE_VERSION deemed improper for y-stream release (BZ#1969915)&lt;/p&gt;
&lt;p&gt;* ice: removal…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2021:2714</guid>
    </item>
    <item>
      <title>bdu:2021-03848</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-03848</link>
      <description>bdu:2021-03848</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-03848</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2021-33909 — CVE-2021-33909 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2021-33909</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2021-33909</guid>
    </item>
    <item>
      <title>certfr-2021-avi-550 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-550</link>
      <description>certfr-2021-avi-550</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-550</guid>
    </item>
    <item>
      <title>cnvd-2021-53926</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-53926</link>
      <description>cnvd-2021-53926</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-53926</guid>
    </item>
    <item>
      <title>EUVD-2026-28655</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-28655</link>
      <description>EUVD-2026-28655</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-28655</guid>
    </item>
    <item>
      <title>fkie_cve-2021-33909</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-33909</link>
      <description>&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-33909</guid>
    </item>
    <item>
      <title>GHSA-6g4v-3wmh-w3jg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6g4v-3wmh-w3jg</link>
      <description>&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6g4v-3wmh-w3jg</guid>
    </item>
    <item>
      <title>gsd-2021-33909</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-33909</link>
      <description>gsd-2021-33909</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-33909</guid>
    </item>
    <item>
      <title>ICSA-24-074-07 — Siemens SIMATIC</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-24-074-07</link>
      <description>&lt;p&gt;An attacker could cause a crash or potentially execute arbitrary code by sending specially crafted DNS responses to the DNSmasq process. In order to exploit this vulnerability, an attacker must be able to trigger DNS requests from the device, and must be in a privileged position to inject malicious DNS responses. An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer in kernel land and cause an inet_csk_listen_stop general protection fault, or potentially execute arbitrary code under certain circumstances. The issue can be triggered as root (e.g., inside a default LXC container or with the CAP_NET_ADMIN capability) or after namespace unsharing. This occurs because sk_type and protocol are not checked in the appropriate part of the ip6_mroute_* functions. NOTE: this affects Linux distributions that use 4.9.x longterm kernels before 4.9.187. In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-10, Android-9 Android ID: A-123700107 In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to an empty mutable PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploit…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker could cause a crash or potentially execute arbitrary code by sending specially crafted DNS responses to the DNSmasq process. In order to exploit this vulnerability, an attacker must be able to trigger DNS requests from the device, and must be in a privileged position to inject malicious DNS responses. An issue was discovered in net/ipv6/ip6mr.c in the Linux kernel before 4.11. By setting a specific socket option, an attacker can control a pointer in kernel land and cause an inet_csk_listen_stop general protection fault, or potentially execute arbitrary code under certain circumstances. The issue can be triggered as root (e.g., inside a default LXC container or with the CAP_NET_ADMIN capability) or after namespace unsharing. This occurs because sk_type and protocol are not checked in the appropriate part of the ip6_mroute_* functions. NOTE: this affects Linux distributions that use 4.9.x longterm kernels before 4.9.187. In checkKeyIntent of AccountManagerService.java, there is a possible permission bypass. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-10, Android-9 Android ID: A-123700107 In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to an empty mutable PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploit…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-24-074-07</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-33909 — fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations l…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-33909</link>
      <description>msrc_CVE-2021-33909</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-33909</guid>
    </item>
    <item>
      <title>OESA-2021-1293 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1293</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: kernel, openEuler:20.03-LTS-SP2: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.(CVE-2021-33909)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: kernel, openEuler:20.03-LTS-SP2: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.(CVE-2021-33909)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1293</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:1076-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1076-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:1076-1</guid>
    </item>
    <item>
      <title>RHSA-2021:2715 — Red Hat Security Advisory: kernel-rt security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:2715</link>
      <description>&lt;p&gt;kernel: race condition for removal of the HCI controller kernel: size_t-to-int conversion vulnerability in the filesystem layer&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: race condition for removal of the HCI controller kernel: size_t-to-int conversion vulnerability in the filesystem layer&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:2715</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:2406-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:2406-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:2406-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-33909</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-33909</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 81 more&lt;/p&gt;
&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 81 more&lt;/p&gt;
&lt;p&gt;fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, leading to an integer overflow, an Out-of-bounds Write, and escalation to root by an unprivileged user, aka CID-8cae8cd89f05.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-33909</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0965 — Linux Kernel: Schwachstelle ermöglicht Privilegieneskalation</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0965</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle im Linux Kernel, Red Hat Enterprise Linux und Ubuntu Linux ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle im Linux Kernel, Red Hat Enterprise Linux und Ubuntu Linux ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0965</guid>
    </item>
  </channel>
</rss>
