<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:27:13 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-04153</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-04153</link>
      <description>bdu:2021-04153</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-04153</guid>
    </item>
    <item>
      <title>certfr-2021-avi-788 — De multiples vulnérabilités ont été découvertes dans IBM Cloud Foundry
Migration Runtime. Certaines d'entre elles perme…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-788</link>
      <description>certfr-2021-avi-788</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-788</guid>
    </item>
    <item>
      <title>EUVD-2026-243496</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-243496</link>
      <description>EUVD-2026-243496</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-243496</guid>
    </item>
    <item>
      <title>fkie_cve-2021-33910</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-33910</link>
      <description>&lt;p&gt;basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-33910</guid>
    </item>
    <item>
      <title>GHSA-5337-wcgc-wcvp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5337-wcgc-wcvp</link>
      <description>&lt;p&gt;basic/unit-name.c in systemd 220 through 248 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;basic/unit-name.c in systemd 220 through 248 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5337-wcgc-wcvp</guid>
    </item>
    <item>
      <title>gsd-2021-33910</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-33910</link>
      <description>gsd-2021-33910</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-33910</guid>
    </item>
    <item>
      <title>ICSA-22-167-09 — Siemens SCALANCE LPE9403 Third-Party Vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-22-167-09</link>
      <description>&lt;p&gt;The CivetWeb web library does not validate uploaded filepaths when running on an OS other than Windows, when using the built-in HTTP form-based file upload mechanism, via the mg_handle_form_request API. Web applications that use the file upload form handler, and use parts of the user-controlled filename in the output path, are susceptible to directory traversal A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueue.c. This flaw allows a local attacker with special user privileges to cause a denial of service, slowing and eventually stopping the system while running OSP. The use of alloca function with an uncontrolled size in function unit_name_path_escape allows a local attacker, able to mount a filesystem on a very long path, to crash systemd and the whole system by allocating a very large space in the stack. A race condition vulnerability was found in Go. The incoming requests body weren&amp;#39;t closed after the handler panic and as a consequence this could lead to ReverseProxy crash. The fix for CVE-2021-33196 can be bypassed by crafted inputs. As a result, the NewReader and OpenReader functions in archive/zip can still cause a panic or an unrecoverable fatal error when reading an archive that claims to contain a large number of files, regardless of its actual size. A vulnerability was found in Moby (Docker Engine) where attempting to copy files using docker cp into a specially-crafted container can result in Unix file permi…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The CivetWeb web library does not validate uploaded filepaths when running on an OS other than Windows, when using the built-in HTTP form-based file upload mechanism, via the mg_handle_form_request API. Web applications that use the file upload form handler, and use parts of the user-controlled filename in the output path, are susceptible to directory traversal A corrupted timer tree caused the task wakeup to be missing in the timerqueue_add function in lib/timerqueue.c. This flaw allows a local attacker with special user privileges to cause a denial of service, slowing and eventually stopping the system while running OSP. The use of alloca function with an uncontrolled size in function unit_name_path_escape allows a local attacker, able to mount a filesystem on a very long path, to crash systemd and the whole system by allocating a very large space in the stack. A race condition vulnerability was found in Go. The incoming requests body weren&amp;#39;t closed after the handler panic and as a consequence this could lead to ReverseProxy crash. The fix for CVE-2021-33196 can be bypassed by crafted inputs. As a result, the NewReader and OpenReader functions in archive/zip can still cause a panic or an unrecoverable fatal error when reading an archive that claims to contain a large number of files, regardless of its actual size. A vulnerability was found in Moby (Docker Engine) where attempting to copy files using docker cp into a specially-crafted container can result in Unix file permi…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-22-167-09</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-33910 — basic/unit-name.c in systemd prior to 246.15 247.8 248.5 and 249.1 has a Memory Allocation with an Excessive Size Value…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-33910</link>
      <description>msrc_CVE-2021-33910</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-33910</guid>
    </item>
    <item>
      <title>OESA-2021-1271 — systemd security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1271</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: systemd, openEuler:20.03-LTS-SP2: systemd&lt;/p&gt;
&lt;p&gt;systemd is a system and service manager that runs as PID 1 and starts the rest of the system.&#13;
&#13;
Security Fix(es):&#13;
&#13;
basic/unit-name.c in systemd 220 through 248 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.(CVE-2021-33910)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: systemd, openEuler:20.03-LTS-SP2: systemd&lt;/p&gt;
&lt;p&gt;systemd is a system and service manager that runs as PID 1 and starts the rest of the system.&#13;
&#13;
Security Fix(es):&#13;
&#13;
basic/unit-name.c in systemd 220 through 248 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.(CVE-2021-33910)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1271</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:1082-1 — Security update for systemd</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1082-1</link>
      <description>&lt;p&gt;Security update for systemd&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for systemd&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:1082-1</guid>
    </item>
    <item>
      <title>RHSA-2021:2721 — Red Hat Security Advisory: systemd security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:2721</link>
      <description>&lt;p&gt;systemd: uncontrolled allocation on the stack in function unit_name_path_escape leads to crash&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;systemd: uncontrolled allocation on the stack in function unit_name_path_escape leads to crash&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:2721</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:2404-1 — Security update for systemd</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:2404-1</link>
      <description>&lt;p&gt;Security update for systemd&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for systemd&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:2404-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-33910</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-33910</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: systemd, Ubuntu:18.04:LTS: systemd, Ubuntu:20.04:LTS: systemd&lt;/p&gt;
&lt;p&gt;basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: systemd, Ubuntu:18.04:LTS: systemd, Ubuntu:20.04:LTS: systemd&lt;/p&gt;
&lt;p&gt;basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Value (involving strdupa and alloca for a pathname controlled by a local attacker) that results in an operating system crash.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-33910</guid>
    </item>
  </channel>
</rss>
