<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 05:13:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-09034</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-09034</link>
      <description>bdu:2024-09034</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-09034</guid>
    </item>
    <item>
      <title>EUVD-2026-31140</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-31140</link>
      <description>EUVD-2026-31140</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-31140</guid>
    </item>
    <item>
      <title>fkie_cve-2021-40330</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-40330</link>
      <description>&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-40330</guid>
    </item>
    <item>
      <title>GHSA-8r9w-64qj-m6cj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8r9w-64qj-m6cj</link>
      <description>&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8r9w-64qj-m6cj</guid>
    </item>
    <item>
      <title>gsd-2021-40330</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-40330</link>
      <description>gsd-2021-40330</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-40330</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-40330 — git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character which may res…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-40330</link>
      <description>msrc_CVE-2021-40330</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-40330</guid>
    </item>
    <item>
      <title>OESA-2021-1345 — git security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2021-1345</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: git, openEuler:20.03-LTS-SP2: git&lt;/p&gt;
&lt;p&gt;Git is a free and open source distributed version control system designed to handle everything from small to very large projects with speed and efficiency.&lt;/p&gt;
&lt;p&gt;Git is easy to learn and has a tiny footprint with lightning fast performance. It outclasses SCM tools like Subversion, CVS, Perforce, and ClearCase with features like cheap local branching, convenient staging areas, and multiple workflows.&#13;
&#13;
Security Fix(es):&#13;
&#13;
git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.(CVE-2021-40330)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: git, openEuler:20.03-LTS-SP2: git&lt;/p&gt;
&lt;p&gt;Git is a free and open source distributed version control system designed to handle everything from small to very large projects with speed and efficiency.&lt;/p&gt;
&lt;p&gt;Git is easy to learn and has a tiny footprint with lightning fast performance. It outclasses SCM tools like Subversion, CVS, Perforce, and ClearCase with features like cheap local branching, convenient staging areas, and multiple workflows.&#13;
&#13;
Security Fix(es):&#13;
&#13;
git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.(CVE-2021-40330)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2021-1345</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:1345-1 — Security update for git</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:1345-1</link>
      <description>&lt;p&gt;Security update for git&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for git&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:1345-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2021:3300-1 — Security update for git</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2021:3300-1</link>
      <description>&lt;p&gt;Security update for git&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for git&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2021:3300-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-40330</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-40330</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: git, Ubuntu:18.04:LTS: git, Ubuntu:20.04:LTS: git&lt;/p&gt;
&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: git, Ubuntu:18.04:LTS: git, Ubuntu:20.04:LTS: git&lt;/p&gt;
&lt;p&gt;git_connect_git in connect.c in Git before 2.30.1 allows a repository path to contain a newline character, which may result in unexpected cross-protocol requests, as demonstrated by the git://localhost:1234/%0d%0a%0d%0aGET%20/%20HTTP/1.1 substring.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-40330</guid>
    </item>
    <item>
      <title>VDE-2022-010 — PHOENIX CONTACT: Multiple Linux component vulnerabilities fixed in latest AXC F x152 LTS release</title>
      <link>https://cve.radiocsirt.org/vuln/vde-2022-010</link>
      <description>&lt;p&gt;PLCnext Control AXC F x152 is certified according to IEC 62443-4-1 and IEC 62443-4-2.
This certification requires that all third-party components used in the firmware are regularly checked for known vulnerabilities.&lt;/p&gt;
&lt;p&gt;Firmware components in version 2021.06 had already been updated. For the 2022.0 LTS version more firmware components have been updated implicitly fixing the vulnerabilities listed. The vulnerabilities listed above have not been individually verified in terms of actual impact and/or limitations in combination with the affected products listed. The current LTS release 2022.0 LTS contains updates of integrated third-party libraries, SDKs and other third-party software to address these issues nevertheless.&lt;/p&gt;
&lt;p&gt;UPDATE A (April 4th, 2022): Added RFC 4072 (Art. No. 1051328) and fixed affected version of AXC F 3152&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;PLCnext Control AXC F x152 is certified according to IEC 62443-4-1 and IEC 62443-4-2.
This certification requires that all third-party components used in the firmware are regularly checked for known vulnerabilities.&lt;/p&gt;
&lt;p&gt;Firmware components in version 2021.06 had already been updated. For the 2022.0 LTS version more firmware components have been updated implicitly fixing the vulnerabilities listed. The vulnerabilities listed above have not been individually verified in terms of actual impact and/or limitations in combination with the affected products listed. The current LTS release 2022.0 LTS contains updates of integrated third-party libraries, SDKs and other third-party software to address these issues nevertheless.&lt;/p&gt;
&lt;p&gt;UPDATE A (April 4th, 2022): Added RFC 4072 (Art. No. 1051328) and fixed affected version of AXC F 3152&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/vde-2022-010</guid>
    </item>
  </channel>
</rss>
