<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 13:31:28 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-04683</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-04683</link>
      <description>bdu:2025-04683</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-04683</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0578 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0578</link>
      <description>certfr-2024-avi-0578</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0578</guid>
    </item>
    <item>
      <title>EUVD-2026-344452</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-344452</link>
      <description>EUVD-2026-344452</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-344452</guid>
    </item>
    <item>
      <title>fkie_cve-2021-47309</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-47309</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info()&lt;/p&gt;
&lt;p&gt;skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info
type without validation. lwtstate-&amp;gt;data can have various types such as
mpls_iptunnel_encap, etc and these are not compatible.
So skb_tunnel_info() should validate before returning that pointer.&lt;/p&gt;
&lt;p&gt;Splat looks like:
BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan]
Read of size 2 at addr ffff888106ec2698 by task ping/811&lt;/p&gt;
&lt;p&gt;CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195
Call Trace:
 dump_stack_lvl+0x56/0x7b
 print_address_description.constprop.8.cold.13+0x13/0x2ee
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 kasan_report.cold.14+0x83/0xdf
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 vxlan_get_route+0x418/0x4b0 [vxlan]
 [ ... ]
 vxlan_xmit_one+0x148b/0x32b0 [vxlan]
 [ ... ]
 vxlan_xmit+0x25c5/0x4780 [vxlan]
 [ ... ]
 dev_hard_start_xmit+0x1ae/0x6e0
 __dev_queue_xmit+0x1f39/0x31a0
 [ ... ]
 neigh_xmit+0x2f9/0x940
 mpls_xmit+0x911/0x1600 [mpls_iptunnel]
 lwtunnel_xmit+0x18f/0x450
 ip_finish_output2+0x867/0x2040
 [ ... ]&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info()&lt;/p&gt;
&lt;p&gt;skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info
type without validation. lwtstate-&amp;gt;data can have various types such as
mpls_iptunnel_encap, etc and these are not compatible.
So skb_tunnel_info() should validate before returning that pointer.&lt;/p&gt;
&lt;p&gt;Splat looks like:
BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan]
Read of size 2 at addr ffff888106ec2698 by task ping/811&lt;/p&gt;
&lt;p&gt;CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195
Call Trace:
 dump_stack_lvl+0x56/0x7b
 print_address_description.constprop.8.cold.13+0x13/0x2ee
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 kasan_report.cold.14+0x83/0xdf
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 vxlan_get_route+0x418/0x4b0 [vxlan]
 [ ... ]
 vxlan_xmit_one+0x148b/0x32b0 [vxlan]
 [ ... ]
 vxlan_xmit+0x25c5/0x4780 [vxlan]
 [ ... ]
 dev_hard_start_xmit+0x1ae/0x6e0
 __dev_queue_xmit+0x1f39/0x31a0
 [ ... ]
 neigh_xmit+0x2f9/0x940
 mpls_xmit+0x911/0x1600 [mpls_iptunnel]
 lwtunnel_xmit+0x18f/0x450
 ip_finish_output2+0x867/0x2040
 [ ... ]&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-47309</guid>
    </item>
    <item>
      <title>GHSA-m2xg-x7vq-c628</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m2xg-x7vq-c628</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info()&lt;/p&gt;
&lt;p&gt;skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info
type without validation. lwtstate-&amp;gt;data can have various types such as
mpls_iptunnel_encap, etc and these are not compatible.
So skb_tunnel_info() should validate before returning that pointer.&lt;/p&gt;
&lt;p&gt;Splat looks like:
BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan]
Read of size 2 at addr ffff888106ec2698 by task ping/811&lt;/p&gt;
&lt;p&gt;CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195
Call Trace:
 dump_stack_lvl+0x56/0x7b
 print_address_description.constprop.8.cold.13+0x13/0x2ee
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 kasan_report.cold.14+0x83/0xdf
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 vxlan_get_route+0x418/0x4b0 [vxlan]
 [ ... ]
 vxlan_xmit_one+0x148b/0x32b0 [vxlan]
 [ ... ]
 vxlan_xmit+0x25c5/0x4780 [vxlan]
 [ ... ]
 dev_hard_start_xmit+0x1ae/0x6e0
 __dev_queue_xmit+0x1f39/0x31a0
 [ ... ]
 neigh_xmit+0x2f9/0x940
 mpls_xmit+0x911/0x1600 [mpls_iptunnel]
 lwtunnel_xmit+0x18f/0x450
 ip_finish_output2+0x867/0x2040
 [ ... ]&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info()&lt;/p&gt;
&lt;p&gt;skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info
type without validation. lwtstate-&amp;gt;data can have various types such as
mpls_iptunnel_encap, etc and these are not compatible.
So skb_tunnel_info() should validate before returning that pointer.&lt;/p&gt;
&lt;p&gt;Splat looks like:
BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan]
Read of size 2 at addr ffff888106ec2698 by task ping/811&lt;/p&gt;
&lt;p&gt;CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195
Call Trace:
 dump_stack_lvl+0x56/0x7b
 print_address_description.constprop.8.cold.13+0x13/0x2ee
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 kasan_report.cold.14+0x83/0xdf
 ? vxlan_get_route+0x418/0x4b0 [vxlan]
 vxlan_get_route+0x418/0x4b0 [vxlan]
 [ ... ]
 vxlan_xmit_one+0x148b/0x32b0 [vxlan]
 [ ... ]
 vxlan_xmit+0x25c5/0x4780 [vxlan]
 [ ... ]
 dev_hard_start_xmit+0x1ae/0x6e0
 __dev_queue_xmit+0x1f39/0x31a0
 [ ... ]
 neigh_xmit+0x2f9/0x940
 mpls_xmit+0x911/0x1600 [mpls_iptunnel]
 lwtunnel_xmit+0x18f/0x450
 ip_finish_output2+0x867/0x2040
 [ ... ]&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m2xg-x7vq-c628</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:2360-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:2360-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:2360-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-47309</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47309</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws and 107 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info() skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info type without validation. lwtstate-&amp;gt;data can have various types such as mpls_iptunnel_encap, etc and these are not compatible. So skb_tunnel_info() should validate before returning that pointer. Splat looks like: BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan] Read of size 2 at addr ffff888106ec2698 by task ping/811 CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195 Call Trace:  dump_stack_lvl+0x56/0x7b  print_address_description.constprop.8.cold.13+0x13/0x2ee  ? vxlan_get_route+0x418/0x4b0 [vxlan]  ? vxlan_get_route+0x418/0x4b0 [vxlan]  kasan_report.cold.14+0x83/0xdf  ? vxlan_get_route+0x418/0x4b0 [vxlan]  vxlan_get_route+0x418/0x4b0 [vxlan]  [ ... ]  vxlan_xmit_one+0x148b/0x32b0 [vxlan]  [ ... ]  vxlan_xmit+0x25c5/0x4780 [vxlan]  [ ... ]  dev_hard_start_xmit+0x1ae/0x6e0  __dev_queue_xmit+0x1f39/0x31a0  [ ... ]  neigh_xmit+0x2f9/0x940  mpls_xmit+0x911/0x1600 [mpls_iptunnel]  lwtunnel_xmit+0x18f/0x450  ip_finish_output2+0x867/0x2040  [ ... ]&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws and 107 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net: validate lwtstate-&amp;gt;data before returning from skb_tunnel_info() skb_tunnel_info() returns pointer of lwtstate-&amp;gt;data as ip_tunnel_info type without validation. lwtstate-&amp;gt;data can have various types such as mpls_iptunnel_encap, etc and these are not compatible. So skb_tunnel_info() should validate before returning that pointer. Splat looks like: BUG: KASAN: slab-out-of-bounds in vxlan_get_route+0x418/0x4b0 [vxlan] Read of size 2 at addr ffff888106ec2698 by task ping/811 CPU: 1 PID: 811 Comm: ping Not tainted 5.13.0+ #1195 Call Trace:  dump_stack_lvl+0x56/0x7b  print_address_description.constprop.8.cold.13+0x13/0x2ee  ? vxlan_get_route+0x418/0x4b0 [vxlan]  ? vxlan_get_route+0x418/0x4b0 [vxlan]  kasan_report.cold.14+0x83/0xdf  ? vxlan_get_route+0x418/0x4b0 [vxlan]  vxlan_get_route+0x418/0x4b0 [vxlan]  [ ... ]  vxlan_xmit_one+0x148b/0x32b0 [vxlan]  [ ... ]  vxlan_xmit+0x25c5/0x4780 [vxlan]  [ ... ]  dev_hard_start_xmit+0x1ae/0x6e0  __dev_queue_xmit+0x1f39/0x31a0  [ ... ]  neigh_xmit+0x2f9/0x940  mpls_xmit+0x911/0x1600 [mpls_iptunnel]  lwtunnel_xmit+0x18f/0x450  ip_finish_output2+0x867/0x2040  [ ... ]&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47309</guid>
    </item>
  </channel>
</rss>
