<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 04:13:42 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:8384 — Moderate: harfbuzz security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:8384</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: harfbuzz, AlmaLinux:9: harfbuzz-devel, AlmaLinux:9: harfbuzz-icu&lt;/p&gt;
&lt;p&gt;HarfBuzz is an implementation of the OpenType Layout engine.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* harfbuzz: integer overflow in the component hb-ot-shape-fallback.cc (CVE-2022-33068)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: harfbuzz, AlmaLinux:9: harfbuzz-devel, AlmaLinux:9: harfbuzz-icu&lt;/p&gt;
&lt;p&gt;HarfBuzz is an implementation of the OpenType Layout engine.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* harfbuzz: integer overflow in the component hb-ot-shape-fallback.cc (CVE-2022-33068)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;
&lt;p&gt;Additional Changes:&lt;/p&gt;
&lt;p&gt;For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:8384</guid>
    </item>
    <item>
      <title>bdu:2022-05166</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-05166</link>
      <description>bdu:2022-05166</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-05166</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2022-33068 — CVE-2022-33068 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2022-33068</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2022-33068</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0969 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</link>
      <description>certfr-2025-avi-0969</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0969</guid>
    </item>
    <item>
      <title>EUVD-2026-17493</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-17493</link>
      <description>EUVD-2026-17493</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-17493</guid>
    </item>
    <item>
      <title>fkie_cve-2022-33068</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-33068</link>
      <description>&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-33068</guid>
    </item>
    <item>
      <title>GHSA-cq67-chj5-8385</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cq67-chj5-8385</link>
      <description>&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cq67-chj5-8385</guid>
    </item>
    <item>
      <title>gsd-2022-33068</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-33068</link>
      <description>gsd-2022-33068</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-33068</guid>
    </item>
    <item>
      <title>msrc_CVE-2022-33068 — An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of S…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2022-33068</link>
      <description>msrc_CVE-2022-33068</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2022-33068</guid>
    </item>
    <item>
      <title>OESA-2022-1777 — harfbuzz security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2022-1777</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: harfbuzz, openEuler:20.03-LTS-SP3: harfbuzz, openEuler:22.03-LTS: harfbuzz&lt;/p&gt;
&lt;p&gt;HarfBuzz is a text-shaping engine. If you give HarfBuzz a font and a string containing a sequence of Unicode codepoints, HarfBuzz selects and positions the corresponding glyphs from the font, applying all of the necessary layout rules and font features. HarfBuzz then returns the string to you in the form that is correctly arranged for the language and writing system.&#13;
&#13;
Security Fix(es):&#13;
&#13;
An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.(CVE-2022-33068)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: harfbuzz, openEuler:20.03-LTS-SP3: harfbuzz, openEuler:22.03-LTS: harfbuzz&lt;/p&gt;
&lt;p&gt;HarfBuzz is a text-shaping engine. If you give HarfBuzz a font and a string containing a sequence of Unicode codepoints, HarfBuzz selects and positions the corresponding glyphs from the font, applying all of the necessary layout rules and font features. HarfBuzz then returns the string to you in the form that is correctly arranged for the language and writing system.&#13;
&#13;
Security Fix(es):&#13;
&#13;
An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.(CVE-2022-33068)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2022-1777</guid>
    </item>
    <item>
      <title>openSUSE-SU-2022:2663-1 — Security update for harfbuzz</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2022:2663-1</link>
      <description>&lt;p&gt;Security update for harfbuzz&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for harfbuzz&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2022:2663-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2022:2663-1 — Security update for harfbuzz</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2022:2663-1</link>
      <description>&lt;p&gt;Security update for harfbuzz&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for harfbuzz&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2022:2663-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-33068</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-33068</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: openjdk-9, Ubuntu:Pro:18.04:LTS: qtwebengine-opensource-src, Ubuntu:20.04:LTS: harfbuzz, Ubuntu:Pro:20.04:LTS: qtwebengine-opensource-src, Ubuntu:22.04:LTS: harfbuzz, Ubuntu:22.04:LTS: qt6-base, Ubuntu:Pro:22.04:LTS: qtwebengine-opensource-src, Ubuntu:24.04:LTS: qt6-base, Ubuntu:Pro:24.04:LTS: qtwebengine-opensource-src, Ubuntu:25.10: qt6-base and 3 more&lt;/p&gt;
&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: openjdk-9, Ubuntu:Pro:18.04:LTS: qtwebengine-opensource-src, Ubuntu:20.04:LTS: harfbuzz, Ubuntu:Pro:20.04:LTS: qtwebengine-opensource-src, Ubuntu:22.04:LTS: harfbuzz, Ubuntu:22.04:LTS: qt6-base, Ubuntu:Pro:22.04:LTS: qtwebengine-opensource-src, Ubuntu:24.04:LTS: qt6-base, Ubuntu:Pro:24.04:LTS: qtwebengine-opensource-src, Ubuntu:25.10: qt6-base and 3 more&lt;/p&gt;
&lt;p&gt;An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-33068</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-2052 — Mehrere Red Hat Enterprise Linux Pakete: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2052</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen, Sicherheitsvorkehrungen zu umgehen oder sonstige Auswirkungen zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2052</guid>
    </item>
  </channel>
</rss>
