<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 15:17:37 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:1851 — Moderate: pki-core:10.6 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:1851</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: jss, AlmaLinux:8: jss-javadoc, AlmaLinux:8: ldapjdk, AlmaLinux:8: ldapjdk-javadoc, AlmaLinux:8: pki-acme, AlmaLinux:8: pki-base, AlmaLinux:8: pki-base-java, AlmaLinux:8: pki-ca, AlmaLinux:8: pki-kra, AlmaLinux:8: pki-server and 4 more&lt;/p&gt;
&lt;p&gt;The Public Key Infrastructure (PKI) Core contains fundamental packages required by AlmaLinux Certificate System.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* JSS: memory leak in TLS connection leads to OOM (CVE-2021-4213)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: jss, AlmaLinux:8: jss-javadoc, AlmaLinux:8: ldapjdk, AlmaLinux:8: ldapjdk-javadoc, AlmaLinux:8: pki-acme, AlmaLinux:8: pki-base, AlmaLinux:8: pki-base-java, AlmaLinux:8: pki-ca, AlmaLinux:8: pki-kra, AlmaLinux:8: pki-server and 4 more&lt;/p&gt;
&lt;p&gt;The Public Key Infrastructure (PKI) Core contains fundamental packages required by AlmaLinux Certificate System.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* JSS: memory leak in TLS connection leads to OOM (CVE-2021-4213)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:1851</guid>
    </item>
    <item>
      <title>EUVD-2026-21364</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-21364</link>
      <description>EUVD-2026-21364</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-21364</guid>
    </item>
    <item>
      <title>fkie_cve-2021-4213</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-4213</link>
      <description>&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-4213</guid>
    </item>
    <item>
      <title>GHSA-727r-5fr6-wjfp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-727r-5fr6-wjfp</link>
      <description>&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-727r-5fr6-wjfp</guid>
    </item>
    <item>
      <title>gsd-2021-4213</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-4213</link>
      <description>gsd-2021-4213</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-4213</guid>
    </item>
    <item>
      <title>OESA-2024-1208 — jss security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-1208</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: jss&lt;/p&gt;
&lt;p&gt;JSS offers a implementation for java-based applications to use native NSS.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.(CVE-2021-4213)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: jss&lt;/p&gt;
&lt;p&gt;JSS offers a implementation for java-based applications to use native NSS.&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.(CVE-2021-4213)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-1208</guid>
    </item>
    <item>
      <title>RHSA-2022:1851 — Red Hat Security Advisory: pki-core:10.6 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:1851</link>
      <description>&lt;p&gt;JSS: memory leak in TLS connection leads to OOM&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;JSS: memory leak in TLS connection leads to OOM&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:1851</guid>
    </item>
    <item>
      <title>RHSA-2024:0774 — Red Hat Security Advisory: Red Hat Certificate System 10.4 for RHEL 8 security and bug fix update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:0774</link>
      <description>&lt;p&gt;JSS: memory leak in TLS connection leads to OOM&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;JSS: memory leak in TLS connection leads to OOM&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:0774</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-4213</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4213</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: jss, Ubuntu:18.04:LTS: jss, Ubuntu:20.04:LTS: jss, Ubuntu:22.04:LTS: jss, Ubuntu:24.04:LTS: jss, Ubuntu:25.10: jss, Ubuntu:26.04:LTS: jss&lt;/p&gt;
&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: jss, Ubuntu:18.04:LTS: jss, Ubuntu:20.04:LTS: jss, Ubuntu:22.04:LTS: jss, Ubuntu:24.04:LTS: jss, Ubuntu:25.10: jss, Ubuntu:26.04:LTS: jss&lt;/p&gt;
&lt;p&gt;A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-4213</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0352 — Red Hat Enterprise Linux (DogTag PKI): Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0352</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux in der PKI-Core Komponente ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux in der PKI-Core Komponente ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0352</guid>
    </item>
  </channel>
</rss>
