<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 12:32:30 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-11558</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-11558</link>
      <description>bdu:2024-11558</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-11558</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0578 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0578</link>
      <description>certfr-2024-avi-0578</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0578</guid>
    </item>
    <item>
      <title>EUVD-2026-309838</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-309838</link>
      <description>EUVD-2026-309838</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-309838</guid>
    </item>
    <item>
      <title>fkie_cve-2021-47602</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-47602</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;mac80211: track only QoS data frames for admission control&lt;/p&gt;
&lt;p&gt;For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&lt;/p&gt;
&lt;p&gt;Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even
long enough to contain the QoS header.&lt;/p&gt;
&lt;p&gt;Fix this to only do anything for QoS data packets.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;mac80211: track only QoS data frames for admission control&lt;/p&gt;
&lt;p&gt;For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&lt;/p&gt;
&lt;p&gt;Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even
long enough to contain the QoS header.&lt;/p&gt;
&lt;p&gt;Fix this to only do anything for QoS data packets.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-47602</guid>
    </item>
    <item>
      <title>GHSA-g68j-9rxj-c36w</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-g68j-9rxj-c36w</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;mac80211: track only QoS data frames for admission control&lt;/p&gt;
&lt;p&gt;For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&lt;/p&gt;
&lt;p&gt;Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even
long enough to contain the QoS header.&lt;/p&gt;
&lt;p&gt;Fix this to only do anything for QoS data packets.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;mac80211: track only QoS data frames for admission control&lt;/p&gt;
&lt;p&gt;For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&lt;/p&gt;
&lt;p&gt;Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even
long enough to contain the QoS header.&lt;/p&gt;
&lt;p&gt;Fix this to only do anything for QoS data packets.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-g68j-9rxj-c36w</guid>
    </item>
    <item>
      <title>OESA-2024-1793 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-1793</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
net: ethernet: fix potential use-after-free in ec_bhf_remove&#13;
&#13;
static void ec_bhf_remove(struct pci_dev *dev)
{
...
	struct ec_bhf_priv *priv = netdev_priv(net_dev);&#13;
&#13;
	unregister_netdev(net_dev);
	free_netdev(net_dev);&#13;
&#13;
	pci_iounmap(dev, priv-&amp;amp;gt;dma_io);
	pci_iounmap(dev, priv-&amp;amp;gt;io);
...
}&#13;
&#13;
priv is netdev private data, but it is used
after free_netdev(). It can cause use-after-free when accessing priv
pointer. So, fix it by moving free_netdev() after pci_iounmap()
calls.(CVE-2021-47235)&#13;
&#13;
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.(CVE-2021-47285)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
mac80211: track only QoS data frames for admission control&#13;
&#13;
For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&#13;
&#13;
Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;amp;apos;t even
long enough to contain the QoS header.&#13;
&#13;
Fix this to only do anything for QoS data packets.(CVE-2021-47602)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe&#13;
&#13;
Running tests with a debug kernel shows that bnx2fc_recv_frame() is
modifying the per_cpu lport stats cou…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
net: ethernet: fix potential use-after-free in ec_bhf_remove&#13;
&#13;
static void ec_bhf_remove(struct pci_dev *dev)
{
...
	struct ec_bhf_priv *priv = netdev_priv(net_dev);&#13;
&#13;
	unregister_netdev(net_dev);
	free_netdev(net_dev);&#13;
&#13;
	pci_iounmap(dev, priv-&amp;amp;gt;dma_io);
	pci_iounmap(dev, priv-&amp;amp;gt;io);
...
}&#13;
&#13;
priv is netdev private data, but it is used
after free_netdev(). It can cause use-after-free when accessing priv
pointer. So, fix it by moving free_netdev() after pci_iounmap()
calls.(CVE-2021-47235)&#13;
&#13;
Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.(CVE-2021-47285)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
mac80211: track only QoS data frames for admission control&#13;
&#13;
For admission control, obviously all of that only works for
QoS data frames, otherwise we cannot even access the QoS
field in the header.&#13;
&#13;
Syzbot reported (see below) an uninitialized value here due
to a status of a non-QoS nullfunc packet, which isn&amp;amp;apos;t even
long enough to contain the QoS header.&#13;
&#13;
Fix this to only do anything for QoS data packets.(CVE-2021-47602)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe&#13;
&#13;
Running tests with a debug kernel shows that bnx2fc_recv_frame() is
modifying the per_cpu lport stats cou…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-1793</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:2360-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:2360-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:2360-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-47602</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47602</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-kvm and 108 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: mac80211: track only QoS data frames for admission control For admission control, obviously all of that only works for QoS data frames, otherwise we cannot even access the QoS field in the header. Syzbot reported (see below) an uninitialized value here due to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even long enough to contain the QoS header. Fix this to only do anything for QoS data packets.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-kvm and 108 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: mac80211: track only QoS data frames for admission control For admission control, obviously all of that only works for QoS data frames, otherwise we cannot even access the QoS field in the header. Syzbot reported (see below) an uninitialized value here due to a status of a non-QoS nullfunc packet, which isn&amp;#39;t even long enough to contain the QoS header. Fix this to only do anything for QoS data packets.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-47602</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1418 — Linux Kernel: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1418</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1418</guid>
    </item>
  </channel>
</rss>
