<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 18:09:54 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-03694</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-03694</link>
      <description>bdu:2024-03694</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-03694</guid>
    </item>
    <item>
      <title>EUVD-2026-309461</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-309461</link>
      <description>EUVD-2026-309461</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-309461</guid>
    </item>
    <item>
      <title>fkie_cve-2021-46954</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-46954</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets&lt;/p&gt;
&lt;p&gt;when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously
re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on
kernels built with KASAN:&lt;/p&gt;
&lt;p&gt;BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60
 Read of size 1 at addr ffff888147009574 by task ping/947&lt;/p&gt;
&lt;p&gt;CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418
 Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014
 Call Trace:
  &amp;lt;IRQ&amp;gt;
  dump_stack+0x92/0xc1
  print_address_description.constprop.7+0x1a/0x150
  kasan_report.cold.13+0x7f/0x111
  ip_do_fragment+0x1b03/0x1f60
  sch_fragment+0x4bf/0xe40
  tcf_mirred_act+0xc3d/0x11a0 [act_mirred]
  tcf_action_exec+0x104/0x3e0
  fl_classify+0x49a/0x5e0 [cls_flower]
  tcf_classify_ingress+0x18a/0x820
  __netif_receive_skb_core+0xae7/0x3340
  __netif_receive_skb_one_core+0xb6/0x1b0
  process_backlog+0x1ef/0x6c0
  __napi_poll+0xaa/0x500
  net_rx_action+0x702/0xac0
  __do_softirq+0x1e4/0x97f
  do_softirq+0x71/0x90
  &amp;lt;/IRQ&amp;gt;
  __local_bh_enable_ip+0xdb/0xf0
  ip_finish_output2+0x760/0x2120
  ip_do_fragment+0x15a5/0x1f60
  __ip_finish_output+0x4c2/0xea0
  ip_output+0x1ca/0x4d0
  ip_send_skb+0x37/0xa0
  raw_sendmsg+0x1c4b/0x2d00
  sock_sendmsg+0xdb/0x110
  __sys_sendto+0x1d7/0x2b0
  __x64_sys_sendto+0xdd/0x1b0
  do_syscall_64+0x33/0x40
  entry_SYSCALL_64_after_hwframe+0x44/0xae
 RI…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets&lt;/p&gt;
&lt;p&gt;when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously
re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on
kernels built with KASAN:&lt;/p&gt;
&lt;p&gt;BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60
 Read of size 1 at addr ffff888147009574 by task ping/947&lt;/p&gt;
&lt;p&gt;CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418
 Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014
 Call Trace:
  &amp;lt;IRQ&amp;gt;
  dump_stack+0x92/0xc1
  print_address_description.constprop.7+0x1a/0x150
  kasan_report.cold.13+0x7f/0x111
  ip_do_fragment+0x1b03/0x1f60
  sch_fragment+0x4bf/0xe40
  tcf_mirred_act+0xc3d/0x11a0 [act_mirred]
  tcf_action_exec+0x104/0x3e0
  fl_classify+0x49a/0x5e0 [cls_flower]
  tcf_classify_ingress+0x18a/0x820
  __netif_receive_skb_core+0xae7/0x3340
  __netif_receive_skb_one_core+0xb6/0x1b0
  process_backlog+0x1ef/0x6c0
  __napi_poll+0xaa/0x500
  net_rx_action+0x702/0xac0
  __do_softirq+0x1e4/0x97f
  do_softirq+0x71/0x90
  &amp;lt;/IRQ&amp;gt;
  __local_bh_enable_ip+0xdb/0xf0
  ip_finish_output2+0x760/0x2120
  ip_do_fragment+0x15a5/0x1f60
  __ip_finish_output+0x4c2/0xea0
  ip_output+0x1ca/0x4d0
  ip_send_skb+0x37/0xa0
  raw_sendmsg+0x1c4b/0x2d00
  sock_sendmsg+0xdb/0x110
  __sys_sendto+0x1d7/0x2b0
  __x64_sys_sendto+0xdd/0x1b0
  do_syscall_64+0x33/0x40
  entry_SYSCALL_64_after_hwframe+0x44/0xae
 RI…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-46954</guid>
    </item>
    <item>
      <title>GHSA-6jf4-4jp9-4wmw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6jf4-4jp9-4wmw</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets&lt;/p&gt;
&lt;p&gt;when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously
re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on
kernels built with KASAN:&lt;/p&gt;
&lt;p&gt;BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60
 Read of size 1 at addr ffff888147009574 by task ping/947&lt;/p&gt;
&lt;p&gt;CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418
 Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014
 Call Trace:
  &amp;lt;IRQ&amp;gt;
  dump_stack+0x92/0xc1
  print_address_description.constprop.7+0x1a/0x150
  kasan_report.cold.13+0x7f/0x111
  ip_do_fragment+0x1b03/0x1f60
  sch_fragment+0x4bf/0xe40
  tcf_mirred_act+0xc3d/0x11a0 [act_mirred]
  tcf_action_exec+0x104/0x3e0
  fl_classify+0x49a/0x5e0 [cls_flower]
  tcf_classify_ingress+0x18a/0x820
  __netif_receive_skb_core+0xae7/0x3340
  __netif_receive_skb_one_core+0xb6/0x1b0
  process_backlog+0x1ef/0x6c0
  __napi_poll+0xaa/0x500
  net_rx_action+0x702/0xac0
  __do_softirq+0x1e4/0x97f
  do_softirq+0x71/0x90
  &amp;lt;/IRQ&amp;gt;
  __local_bh_enable_ip+0xdb/0xf0
  ip_finish_output2+0x760/0x2120
  ip_do_fragment+0x15a5/0x1f60
  __ip_finish_output+0x4c2/0xea0
  ip_output+0x1ca/0x4d0
  ip_send_skb+0x37/0xa0
  raw_sendmsg+0x1c4b/0x2d00
  sock_sendmsg+0xdb/0x110
  __sys_sendto+0x1d7/0x2b0
  __x64_sys_sendto+0xdd/0x1b0
  do_syscall_64+0x33/0x40
  entry_SYSCALL_64_after_hwframe+0x44/0xae
 RI…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets&lt;/p&gt;
&lt;p&gt;when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously
re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on
kernels built with KASAN:&lt;/p&gt;
&lt;p&gt;BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60
 Read of size 1 at addr ffff888147009574 by task ping/947&lt;/p&gt;
&lt;p&gt;CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418
 Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014
 Call Trace:
  &amp;lt;IRQ&amp;gt;
  dump_stack+0x92/0xc1
  print_address_description.constprop.7+0x1a/0x150
  kasan_report.cold.13+0x7f/0x111
  ip_do_fragment+0x1b03/0x1f60
  sch_fragment+0x4bf/0xe40
  tcf_mirred_act+0xc3d/0x11a0 [act_mirred]
  tcf_action_exec+0x104/0x3e0
  fl_classify+0x49a/0x5e0 [cls_flower]
  tcf_classify_ingress+0x18a/0x820
  __netif_receive_skb_core+0xae7/0x3340
  __netif_receive_skb_one_core+0xb6/0x1b0
  process_backlog+0x1ef/0x6c0
  __napi_poll+0xaa/0x500
  net_rx_action+0x702/0xac0
  __do_softirq+0x1e4/0x97f
  do_softirq+0x71/0x90
  &amp;lt;/IRQ&amp;gt;
  __local_bh_enable_ip+0xdb/0xf0
  ip_finish_output2+0x760/0x2120
  ip_do_fragment+0x15a5/0x1f60
  __ip_finish_output+0x4c2/0xea0
  ip_output+0x1ca/0x4d0
  ip_send_skb+0x37/0xa0
  raw_sendmsg+0x1c4b/0x2d00
  sock_sendmsg+0xdb/0x110
  __sys_sendto+0x1d7/0x2b0
  __x64_sys_sendto+0xdd/0x1b0
  do_syscall_64+0x33/0x40
  entry_SYSCALL_64_after_hwframe+0x44/0xae
 RI…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6jf4-4jp9-4wmw</guid>
    </item>
    <item>
      <title>gsd-2021-46954</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-46954</link>
      <description>gsd-2021-46954</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-46954</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-46954</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-46954</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 57 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on kernels built with KASAN:  BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60  Read of size 1 at addr ffff888147009574 by task ping/947  CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418  Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014  Call Trace:   &amp;lt;IRQ&amp;gt;   dump_stack+0x92/0xc1   print_address_description.constprop.7+0x1a/0x150   kasan_report.cold.13+0x7f/0x111   ip_do_fragment+0x1b03/0x1f60   sch_fragment+0x4bf/0xe40   tcf_mirred_act+0xc3d/0x11a0 [act_mirred]   tcf_action_exec+0x104/0x3e0   fl_classify+0x49a/0x5e0 [cls_flower]   tcf_classify_ingress+0x18a/0x820   __netif_receive_skb_core+0xae7/0x3340   __netif_receive_skb_one_core+0xb6/0x1b0   process_backlog+0x1ef/0x6c0   __napi_poll+0xaa/0x500   net_rx_action+0x702/0xac0   __do_softirq+0x1e4/0x97f   do_softirq+0x71/0x90   &amp;lt;/IRQ&amp;gt;   __local_bh_enable_ip+0xdb/0xf0   ip_finish_output2+0x760/0x2120   ip_do_fragment+0x15a5/0x1f60   __ip_finish_output+0x4c2/0xea0   ip_output+0x1ca/0x4d0   ip_send_skb+0x37/0xa0   raw_sendmsg+0x1c4b/0x2d00   sock_sendmsg+0xdb/0x110   __sys_sendto+0x1d7/0x2b0   __x64_sys_sendto+0xdd/0x1b0   do_syscall_64+0x33/0x40   entry_SYSCALL_64_after_hwframe+0x44/0xae  RIP: 0…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 57 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_frag: fix stack OOB read while fragmenting IPv4 packets when &amp;#39;act_mirred&amp;#39; tries to fragment IPv4 packets that had been previously re-assembled using &amp;#39;act_ct&amp;#39;, splats like the following can be observed on kernels built with KASAN:  BUG: KASAN: stack-out-of-bounds in ip_do_fragment+0x1b03/0x1f60  Read of size 1 at addr ffff888147009574 by task ping/947  CPU: 0 PID: 947 Comm: ping Not tainted 5.12.0-rc6+ #418  Hardware name: Red Hat KVM, BIOS 1.11.1-4.module+el8.1.0+4066+0f1aadab 04/01/2014  Call Trace:   &amp;lt;IRQ&amp;gt;   dump_stack+0x92/0xc1   print_address_description.constprop.7+0x1a/0x150   kasan_report.cold.13+0x7f/0x111   ip_do_fragment+0x1b03/0x1f60   sch_fragment+0x4bf/0xe40   tcf_mirred_act+0xc3d/0x11a0 [act_mirred]   tcf_action_exec+0x104/0x3e0   fl_classify+0x49a/0x5e0 [cls_flower]   tcf_classify_ingress+0x18a/0x820   __netif_receive_skb_core+0xae7/0x3340   __netif_receive_skb_one_core+0xb6/0x1b0   process_backlog+0x1ef/0x6c0   __napi_poll+0xaa/0x500   net_rx_action+0x702/0xac0   __do_softirq+0x1e4/0x97f   do_softirq+0x71/0x90   &amp;lt;/IRQ&amp;gt;   __local_bh_enable_ip+0xdb/0xf0   ip_finish_output2+0x760/0x2120   ip_do_fragment+0x15a5/0x1f60   __ip_finish_output+0x4c2/0xea0   ip_output+0x1ca/0x4d0   ip_send_skb+0x37/0xa0   raw_sendmsg+0x1c4b/0x2d00   sock_sendmsg+0xdb/0x110   __sys_sendto+0x1d7/0x2b0   __x64_sys_sendto+0xdd/0x1b0   do_syscall_64+0x33/0x40   entry_SYSCALL_64_after_hwframe+0x44/0xae  RIP: 0…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-46954</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0500 — Linux Kernel: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0500</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0500</guid>
    </item>
  </channel>
</rss>
