<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 04:22:26 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:0825 — Important: kernel security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:0825</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;The following packages have been upgraded to a later upstream version: kernel (4.18.0). (BZ#2036888)&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: improper initialization of the &amp;#34;flags&amp;#34; member of the new pipe_buffer (CVE-2022-0847)&lt;/p&gt;
&lt;p&gt;* kernel: Use After Free in unix_gc() which could result in a local privilege escalation (CVE-2021-0920)&lt;/p&gt;
&lt;p&gt;* kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout (CVE-2021-4154)&lt;/p&gt;
&lt;p&gt;* kernel: possible privileges escalation due to missing TLB flush (CVE-2022-0330)&lt;/p&gt;
&lt;p&gt;* kernel: remote stack overflow via kernel panic on systems using TIPC may lead to DoS (CVE-2022-0435)&lt;/p&gt;
&lt;p&gt;* kernel: cgroups v1 release_agent feature may allow privilege escalation (CVE-2022-0492)&lt;/p&gt;
&lt;p&gt;* kernel: missing check in ioctl allows kernel memory read/write (CVE-2022-0516)&lt;/p&gt;
&lt;p&gt;* kernel: failing usercopy allows for use-after-free exploitation (CVE-2022-22942)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* Intel QAT Kernel power up fix (BZ#2016437)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.4 seeing scsi_dma_map failed with mpt3sas driver and affecting performance (BZ#2018928)&lt;/p&gt;
&lt;p&gt;* [Lenovo 8.4 bug] audio_HDMI certification failed on AlmaLinux 8.4GA (No hdmi out) (BZ#2027335)&lt;/p&gt;
&lt;p&gt;* [AlmaLinux-8.5][4.18.0-323.el8.ppc64le][POWER8/9/10] security_flav…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: kernel-tools-libs-devel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;The following packages have been upgraded to a later upstream version: kernel (4.18.0). (BZ#2036888)&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: improper initialization of the &amp;#34;flags&amp;#34; member of the new pipe_buffer (CVE-2022-0847)&lt;/p&gt;
&lt;p&gt;* kernel: Use After Free in unix_gc() which could result in a local privilege escalation (CVE-2021-0920)&lt;/p&gt;
&lt;p&gt;* kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout (CVE-2021-4154)&lt;/p&gt;
&lt;p&gt;* kernel: possible privileges escalation due to missing TLB flush (CVE-2022-0330)&lt;/p&gt;
&lt;p&gt;* kernel: remote stack overflow via kernel panic on systems using TIPC may lead to DoS (CVE-2022-0435)&lt;/p&gt;
&lt;p&gt;* kernel: cgroups v1 release_agent feature may allow privilege escalation (CVE-2022-0492)&lt;/p&gt;
&lt;p&gt;* kernel: missing check in ioctl allows kernel memory read/write (CVE-2022-0516)&lt;/p&gt;
&lt;p&gt;* kernel: failing usercopy allows for use-after-free exploitation (CVE-2022-22942)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Bug Fix(es):&lt;/p&gt;
&lt;p&gt;* Intel QAT Kernel power up fix (BZ#2016437)&lt;/p&gt;
&lt;p&gt;* AlmaLinux8.4 seeing scsi_dma_map failed with mpt3sas driver and affecting performance (BZ#2018928)&lt;/p&gt;
&lt;p&gt;* [Lenovo 8.4 bug] audio_HDMI certification failed on AlmaLinux 8.4GA (No hdmi out) (BZ#2027335)&lt;/p&gt;
&lt;p&gt;* [AlmaLinux-8.5][4.18.0-323.el8.ppc64le][POWER8/9/10] security_flav…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:0825</guid>
    </item>
    <item>
      <title>bdu:2022-05676</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-05676</link>
      <description>bdu:2022-05676</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-05676</guid>
    </item>
    <item>
      <title>certfr-2022-avi-064 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
Red Hat. Elles permettent à un attaquant de prov…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-064</link>
      <description>certfr-2022-avi-064</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-064</guid>
    </item>
    <item>
      <title>EUVD-2026-21363</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-21363</link>
      <description>EUVD-2026-21363</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-21363</guid>
    </item>
    <item>
      <title>fkie_cve-2021-4154</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-4154</link>
      <description>&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-4154</guid>
    </item>
    <item>
      <title>GHSA-qvm5-4fh7-hcfx</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qvm5-4fh7-hcfx</link>
      <description>&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qvm5-4fh7-hcfx</guid>
    </item>
    <item>
      <title>gsd-2021-4154</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-4154</link>
      <description>gsd-2021-4154</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-4154</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-4154 — A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel's cgroup v1 par…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-4154</link>
      <description>msrc_CVE-2021-4154</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-4154</guid>
    </item>
    <item>
      <title>RHSA-2022:0186 — Red Hat Security Advisory: kernel security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:0186</link>
      <description>&lt;p&gt;kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout kernel: xfs: raw block device data leak in XFS_IOC_ALLOCSP IOCTL kernel: fs_context: heap overflow in legacy parameter handling&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout kernel: xfs: raw block device data leak in XFS_IOC_ALLOCSP IOCTL kernel: fs_context: heap overflow in legacy parameter handling&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:0186</guid>
    </item>
    <item>
      <title>RHSA-2022:0825 — Red Hat Security Advisory: kernel security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:0825</link>
      <description>&lt;p&gt;kernel: Use After Free in unix_gc() which could result in a local privilege escalation kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout kernel: possible privileges escalation due to missing TLB flush kernel: remote stack overflow via kernel panic on systems using TIPC may lead to DoS kernel: cgroups v1 release_agent feature may allow privilege escalation kernel: missing check in ioctl allows kernel memory read/write kernel: improper initialization of the &amp;#34;flags&amp;#34; member of the new pipe_buffer kernel: failing usercopy allows for use-after-free exploitation&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: Use After Free in unix_gc() which could result in a local privilege escalation kernel: local privilege escalation by exploiting the fsconfig syscall parameter leads to container breakout kernel: possible privileges escalation due to missing TLB flush kernel: remote stack overflow via kernel panic on systems using TIPC may lead to DoS kernel: cgroups v1 release_agent feature may allow privilege escalation kernel: missing check in ioctl allows kernel memory read/write kernel: improper initialization of the &amp;#34;flags&amp;#34; member of the new pipe_buffer kernel: failing usercopy allows for use-after-free exploitation&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:0825</guid>
    </item>
    <item>
      <title>SUSE-SU-2022:0241-1 — Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP2)</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2022:0241-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP2)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel (Live Patch 14 for SLE 15 SP2)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2022:0241-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-4154</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4154</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-gcp-5.4, Ubuntu:18.04:LTS: linux-gke-5.4, Ubuntu:18.04:LTS: linux-gkeop-5.4, Ubuntu:18.04:LTS: linux-hwe-5.4, Ubuntu:18.04:LTS: linux-oracle-5.4, Ubuntu:18.04:LTS: linux-raspi-5.4, Ubuntu:18.04:LTS: linux-aws-5.0 and 52 more&lt;/p&gt;
&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-gcp-5.4, Ubuntu:18.04:LTS: linux-gke-5.4, Ubuntu:18.04:LTS: linux-gkeop-5.4, Ubuntu:18.04:LTS: linux-hwe-5.4, Ubuntu:18.04:LTS: linux-oracle-5.4, Ubuntu:18.04:LTS: linux-raspi-5.4, Ubuntu:18.04:LTS: linux-aws-5.0 and 52 more&lt;/p&gt;
&lt;p&gt;A use-after-free flaw was found in cgroup1_parse_param in kernel/cgroup/cgroup-v1.c in the Linux kernel&amp;#39;s cgroup v1 parser. A local attacker with a user privilege could cause a privilege escalation by exploiting the fsconfig syscall parameter leading to a container breakout and a denial of service on the system.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4154</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0137 — Android Patchday Juni 2022</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0137</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Privilegien zu erhöhen, vertrauliche Informationen offenzulegen, beliebigen Code auszuführen und einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Privilegien zu erhöhen, vertrauliche Informationen offenzulegen, beliebigen Code auszuführen und einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0137</guid>
    </item>
  </channel>
</rss>
