<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 13:58:02 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:0379 — Important: libXpm security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:0379</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libXpm, AlmaLinux:8: libXpm-devel&lt;/p&gt;
&lt;p&gt;X.Org X11 libXpm runtime library.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libXpm: compression commands depend on $PATH (CVE-2022-4883)
* libXpm: Runaway loop on width of 0 and enormous height (CVE-2022-44617)
* libXpm: Infinite loop on unclosed comments (CVE-2022-46285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libXpm, AlmaLinux:8: libXpm-devel&lt;/p&gt;
&lt;p&gt;X.Org X11 libXpm runtime library.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libXpm: compression commands depend on $PATH (CVE-2022-4883)
* libXpm: Runaway loop on width of 0 and enormous height (CVE-2022-44617)
* libXpm: Infinite loop on unclosed comments (CVE-2022-46285)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:0379</guid>
    </item>
    <item>
      <title>bdu:2023-00390</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-00390</link>
      <description>bdu:2023-00390</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-00390</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2022-46285 — CVE-2022-46285 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2022-46285</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2022-46285</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0318 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;VMware&lt;/span&gt;. Elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0318</link>
      <description>certfr-2023-avi-0318</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0318</guid>
    </item>
    <item>
      <title>EUVD-2026-224884</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-224884</link>
      <description>EUVD-2026-224884</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-224884</guid>
    </item>
    <item>
      <title>fkie_cve-2022-46285</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-46285</link>
      <description>&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-46285</guid>
    </item>
    <item>
      <title>GHSA-x5vr-48jx-h8wp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x5vr-48jx-h8wp</link>
      <description>&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x5vr-48jx-h8wp</guid>
    </item>
    <item>
      <title>gsd-2022-46285</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-46285</link>
      <description>gsd-2022-46285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-46285</guid>
    </item>
    <item>
      <title>msrc_CVE-2022-46285 — A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2022-46285</link>
      <description>msrc_CVE-2022-46285</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2022-46285</guid>
    </item>
    <item>
      <title>OESA-2023-1078 — libXpm security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1078</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libXpm, openEuler:20.03-LTS-SP3: libXpm, openEuler:22.03-LTS: libXpm, openEuler:22.03-LTS-SP1: libXpm&lt;/p&gt;
&lt;p&gt;X.Org X11 libXpm runtime library&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.(CVE-2022-4883)&#13;
&#13;
A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.(CVE-2022-44617)&#13;
&#13;
A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.(CVE-2022-46285)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libXpm, openEuler:20.03-LTS-SP3: libXpm, openEuler:22.03-LTS: libXpm, openEuler:22.03-LTS-SP1: libXpm&lt;/p&gt;
&lt;p&gt;X.Org X11 libXpm runtime library&#13;
&#13;
Security Fix(es):&#13;
&#13;
A flaw was found in libXpm. When processing files with .Z or .gz extensions, the library calls external programs to compress and uncompress files, relying on the PATH environment variable to find these programs, which could allow a malicious user to execute other programs by manipulating the PATH environment variable.(CVE-2022-4883)&#13;
&#13;
A flaw was found in libXpm. When processing a file with width of 0 and a very large height, some parser functions will be called repeatedly and can lead to an infinite loop, resulting in a Denial of Service in the application linked to the library.(CVE-2022-44617)&#13;
&#13;
A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.(CVE-2022-46285)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1078</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12617-1 — libXpm-devel-3.5.14-2.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12617-1</link>
      <description>&lt;p&gt;libXpm-devel-3.5.14-2.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libXpm-devel-3.5.14-2.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12617-1</guid>
    </item>
    <item>
      <title>RHSA-2023:0378 — Red Hat Security Advisory: libXpm security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:0378</link>
      <description>&lt;p&gt;libXpm: compression commands depend on $PATH libXpm: Runaway loop on width of 0 and enormous height libXpm: Infinite loop on unclosed comments&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libXpm: compression commands depend on $PATH libXpm: Runaway loop on width of 0 and enormous height libXpm: Infinite loop on unclosed comments&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:0378</guid>
    </item>
    <item>
      <title>SUSE-SU-2023:0165-1 — Security update for libXpm</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2023:0165-1</link>
      <description>&lt;p&gt;Security update for libXpm&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libXpm&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2023:0165-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-46285</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-46285</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libxpm, Ubuntu:14.04:LTS: motif, Ubuntu:Pro:16.04:LTS: libxpm, Ubuntu:16.04:LTS: motif, Ubuntu:18.04:LTS: libxpm, Ubuntu:18.04:LTS: motif, Ubuntu:20.04:LTS: libxpm, Ubuntu:20.04:LTS: motif, Ubuntu:22.04:LTS: libxpm, Ubuntu:22.04:LTS: motif and 3 more&lt;/p&gt;
&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libxpm, Ubuntu:14.04:LTS: motif, Ubuntu:Pro:16.04:LTS: libxpm, Ubuntu:16.04:LTS: motif, Ubuntu:18.04:LTS: libxpm, Ubuntu:18.04:LTS: motif, Ubuntu:20.04:LTS: libxpm, Ubuntu:20.04:LTS: motif, Ubuntu:22.04:LTS: libxpm, Ubuntu:22.04:LTS: motif and 3 more&lt;/p&gt;
&lt;p&gt;A flaw was found in libXpm. This issue occurs when parsing a file with a comment not closed; the end-of-file condition will not be detected, leading to an infinite loop and resulting in a Denial of Service in the application linked to the library.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-46285</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0113 — X.Org X11: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0113</link>
      <description>&lt;p&gt;Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in X.Org X11 in libXpm ausnutzen, um einen Denial of Service Angriff durchzuführen oder seine Rechte zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer oder lokaler Angreifer kann mehrere Schwachstellen in X.Org X11 in libXpm ausnutzen, um einen Denial of Service Angriff durchzuführen oder seine Rechte zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0113</guid>
    </item>
  </channel>
</rss>
