<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 13:56:55 +0000</lastBuildDate>
    <item>
      <title>certfr-2022-avi-543 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
Red Hat. Certaines d'entre elles permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-543</link>
      <description>certfr-2022-avi-543</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-543</guid>
    </item>
    <item>
      <title>EUVD-2026-234056</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-234056</link>
      <description>EUVD-2026-234056</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-234056</guid>
    </item>
    <item>
      <title>fkie_cve-2022-31045</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-31045</link>
      <description>&lt;p&gt;Istio is an open platform to connect, manage, and secure microservices. In affected versions ill-formed headers sent to Envoy in certain configurations can lead to unexpected memory access resulting in undefined behavior or crashing. Users are most likely at risk if they have an Istio ingress Gateway exposed to external traffic. This vulnerability has been resolved in versions 1.12.8, 1.13.5, and 1.14.1. Users are advised to upgrade. There are no known workarounds for this issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Istio is an open platform to connect, manage, and secure microservices. In affected versions ill-formed headers sent to Envoy in certain configurations can lead to unexpected memory access resulting in undefined behavior or crashing. Users are most likely at risk if they have an Istio ingress Gateway exposed to external traffic. This vulnerability has been resolved in versions 1.12.8, 1.13.5, and 1.14.1. Users are advised to upgrade. There are no known workarounds for this issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-31045</guid>
    </item>
    <item>
      <title>GHSA-xwx5-5c9g-x68x — Ill-formed headers may lead to unexpected behavior in Istio</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xwx5-5c9g-x68x</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: istio.io/istio&lt;/p&gt;
&lt;p&gt;### Impact
Ill-formed headers sent to Envoy in certain configurations can lead to unexpected memory access resulting in undefined behavior or crashing.&lt;/p&gt;
&lt;p&gt;You are at most risk if you have an Istio ingress Gateway exposed to external traffic.&lt;/p&gt;
&lt;p&gt;### Patches
1.12.8, 1.13.5, 1.14.1&lt;/p&gt;
&lt;p&gt;### Workarounds
No.&lt;/p&gt;
&lt;p&gt;### References
More details can be found in the [Istio Security Bulletin](https://istio.io/latest/news/security/istio-security-2022-05)&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory, please email us at [istio-security-vulnerability-reports@googlegroups.com](mailto:istio-security-vulnerability-reports@googlegroups.com)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: istio.io/istio&lt;/p&gt;
&lt;p&gt;### Impact
Ill-formed headers sent to Envoy in certain configurations can lead to unexpected memory access resulting in undefined behavior or crashing.&lt;/p&gt;
&lt;p&gt;You are at most risk if you have an Istio ingress Gateway exposed to external traffic.&lt;/p&gt;
&lt;p&gt;### Patches
1.12.8, 1.13.5, 1.14.1&lt;/p&gt;
&lt;p&gt;### Workarounds
No.&lt;/p&gt;
&lt;p&gt;### References
More details can be found in the [Istio Security Bulletin](https://istio.io/latest/news/security/istio-security-2022-05)&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory, please email us at [istio-security-vulnerability-reports@googlegroups.com](mailto:istio-security-vulnerability-reports@googlegroups.com)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xwx5-5c9g-x68x</guid>
    </item>
    <item>
      <title>gsd-2022-31045</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-31045</link>
      <description>gsd-2022-31045</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-31045</guid>
    </item>
    <item>
      <title>RHSA-2022:5004 — Red Hat Security Advisory: Red Hat OpenShift Service Mesh 2.1.3 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:5004</link>
      <description>&lt;p&gt;golang: math/big: uncontrolled memory consumption due to an unhandled overflow via Rat.SetString golang: cmd/go: misinterpretation of branch names can lead to incorrect access control golang: crypto/elliptic: IsOnCurve returns true for invalid field elements envoy: Segfault in GrpcHealthCheckerImpl envoy: Decompressors can be zip bombed envoy: oauth filter allows trivial bypass envoy: oauth filter calls continueDecoding() from within decodeHeaders() Istio: Unsafe memory access in metadata exchange.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;golang: math/big: uncontrolled memory consumption due to an unhandled overflow via Rat.SetString golang: cmd/go: misinterpretation of branch names can lead to incorrect access control golang: crypto/elliptic: IsOnCurve returns true for invalid field elements envoy: Segfault in GrpcHealthCheckerImpl envoy: Decompressors can be zip bombed envoy: oauth filter allows trivial bypass envoy: oauth filter calls continueDecoding() from within decodeHeaders() Istio: Unsafe memory access in metadata exchange.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:5004</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0288 — Red Hat OpenShift: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0288</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um einen Denial of Service Angriff durchzuführen, einen nicht näher spezifizierten Angriff durchzuführen, vertrauliche Informationen offenzulegen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat OpenShift ausnutzen, um einen Denial of Service Angriff durchzuführen, einen nicht näher spezifizierten Angriff durchzuführen, vertrauliche Informationen offenzulegen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0288</guid>
    </item>
  </channel>
</rss>
