<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 22:22:51 +0000</lastBuildDate>
    <item>
      <title>ALSA-2021:3061 — Moderate: virt:rhel and virt-devel:rhel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2021:3061</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libguestfs-winsupport, AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: libnbd, AlmaLinux:8: libnbd-devel, AlmaLinux:8: libvirt-dbus, AlmaLinux:8: nbdfuse, AlmaLinux:8: nbdkit, AlmaLinux:8: nbdkit-bash-completion and 25 more&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* QEMU: msix: OOB access during mmio operations may lead to DoS (CVE-2020-13754)&lt;/p&gt;
&lt;p&gt;* hivex: Buffer overflow when provided invalid node key length (CVE-2021-3504)&lt;/p&gt;
&lt;p&gt;* QEMU: net: an assert failure via eth_get_gso_type (CVE-2020-27617)&lt;/p&gt;
&lt;p&gt;* QEMU: net: infinite loop in loopback mode may lead to stack overflow (CVE-2021-3416)&lt;/p&gt;
&lt;p&gt;* qemu: out-of-bound heap buffer access via an interrupt ID field (CVE-2021-20221)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* cannot restart default network and firewalld: iptables: No chain/target/match by that name. (BZ#1958301)&lt;/p&gt;
&lt;p&gt;* RHEL8.4 Nightly[0322] - KVM guest fails to find zipl boot menu index (qemu-kvm) (BZ#1975679)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libguestfs-winsupport, AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: libnbd, AlmaLinux:8: libnbd-devel, AlmaLinux:8: libvirt-dbus, AlmaLinux:8: nbdfuse, AlmaLinux:8: nbdkit, AlmaLinux:8: nbdkit-bash-completion and 25 more&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* QEMU: msix: OOB access during mmio operations may lead to DoS (CVE-2020-13754)&lt;/p&gt;
&lt;p&gt;* hivex: Buffer overflow when provided invalid node key length (CVE-2021-3504)&lt;/p&gt;
&lt;p&gt;* QEMU: net: an assert failure via eth_get_gso_type (CVE-2020-27617)&lt;/p&gt;
&lt;p&gt;* QEMU: net: infinite loop in loopback mode may lead to stack overflow (CVE-2021-3416)&lt;/p&gt;
&lt;p&gt;* qemu: out-of-bound heap buffer access via an interrupt ID field (CVE-2021-20221)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* cannot restart default network and firewalld: iptables: No chain/target/match by that name. (BZ#1958301)&lt;/p&gt;
&lt;p&gt;* RHEL8.4 Nightly[0322] - KVM guest fails to find zipl boot menu index (qemu-kvm) (BZ#1975679)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2021:3061</guid>
    </item>
    <item>
      <title>bdu:2021-04581</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-04581</link>
      <description>bdu:2021-04581</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-04581</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0051 — De multiples vulnérabilités ont été découvertes dans les produits
Juniper. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0051</link>
      <description>certfr-2023-avi-0051</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0051</guid>
    </item>
    <item>
      <title>EUVD-2026-20857</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-20857</link>
      <description>EUVD-2026-20857</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-20857</guid>
    </item>
    <item>
      <title>fkie_cve-2021-3504</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-3504</link>
      <description>&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-3504</guid>
    </item>
    <item>
      <title>GHSA-5vp3-c6x6-5464</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5vp3-c6x6-5464</link>
      <description>&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5vp3-c6x6-5464</guid>
    </item>
    <item>
      <title>gsd-2021-3504</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-3504</link>
      <description>gsd-2021-3504</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-3504</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-3504 — A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-3504</link>
      <description>msrc_CVE-2021-3504</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-3504</guid>
    </item>
    <item>
      <title>OESA-2021-1200 — hivex security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1200</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: hivex&lt;/p&gt;
&lt;p&gt;Hivex is a library for extracting the contents of Windows Registry &amp;amp;quot;hive&amp;amp;quot; files.  It is designed to be secure against buggy or malicious registry files.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.(CVE-2021-3504)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: hivex&lt;/p&gt;
&lt;p&gt;Hivex is a library for extracting the contents of Windows Registry &amp;amp;quot;hive&amp;amp;quot; files.  It is designed to be secure against buggy or malicious registry files.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.(CVE-2021-3504)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1200</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0806-1 — Security update for hivex</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0806-1</link>
      <description>&lt;p&gt;Security update for hivex&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for hivex&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0806-1</guid>
    </item>
    <item>
      <title>RHSA-2021:3061 — Red Hat Security Advisory: virt:rhel and virt-devel:rhel security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:3061</link>
      <description>&lt;p&gt;QEMU: msix: OOB access during mmio operations may lead to DoS QEMU: net: an assert failure via eth_get_gso_type QEMU: net: Infinite loop in loopback mode may lead to stack overflow hivex: Buffer overflow when provided invalid node key length qemu: out-of-bound heap buffer access via an interrupt ID field&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;QEMU: msix: OOB access during mmio operations may lead to DoS QEMU: net: an assert failure via eth_get_gso_type QEMU: net: Infinite loop in loopback mode may lead to stack overflow hivex: Buffer overflow when provided invalid node key length qemu: out-of-bound heap buffer access via an interrupt ID field&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:3061</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:1760-1 — Security update for hivex</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:1760-1</link>
      <description>&lt;p&gt;Security update for hivex&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for hivex&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:1760-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-3504</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3504</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: hivex, Ubuntu:Pro:16.04:LTS: hivex, Ubuntu:18.04:LTS: hivex, Ubuntu:20.04:LTS: hivex, Ubuntu:22.04:LTS: hivex, Ubuntu:24.04:LTS: hivex, Ubuntu:25.10: hivex, Ubuntu:26.04:LTS: hivex&lt;/p&gt;
&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: hivex, Ubuntu:Pro:16.04:LTS: hivex, Ubuntu:18.04:LTS: hivex, Ubuntu:20.04:LTS: hivex, Ubuntu:22.04:LTS: hivex, Ubuntu:24.04:LTS: hivex, Ubuntu:25.10: hivex, Ubuntu:26.04:LTS: hivex&lt;/p&gt;
&lt;p&gt;A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or cause the program to crash. The highest threat from this vulnerability is to system availability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-3504</guid>
    </item>
  </channel>
</rss>
