<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 19:04:07 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-07600</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-07600</link>
      <description>bdu:2024-07600</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-07600</guid>
    </item>
    <item>
      <title>EUVD-2026-310204</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-310204</link>
      <description>EUVD-2026-310204</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-310204</guid>
    </item>
    <item>
      <title>fkie_cve-2022-48867</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-48867</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;dmaengine: idxd: Prevent use after free on completion memory&lt;/p&gt;
&lt;p&gt;On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;gt;
	drv_disable_wq() -&amp;gt;
		idxd_wq_free_irq() -&amp;gt;
			idxd_flush_pending_descs().&lt;/p&gt;
&lt;p&gt;If there are any descriptors present that need to be flushed this
flow triggers a &amp;#34;not present&amp;#34; page fault as below:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&lt;/p&gt;
&lt;p&gt;The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;gt;idxd_wq_free_resources()&lt;/p&gt;
&lt;p&gt;Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;dmaengine: idxd: Prevent use after free on completion memory&lt;/p&gt;
&lt;p&gt;On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;gt;
	drv_disable_wq() -&amp;gt;
		idxd_wq_free_irq() -&amp;gt;
			idxd_flush_pending_descs().&lt;/p&gt;
&lt;p&gt;If there are any descriptors present that need to be flushed this
flow triggers a &amp;#34;not present&amp;#34; page fault as below:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&lt;/p&gt;
&lt;p&gt;The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;gt;idxd_wq_free_resources()&lt;/p&gt;
&lt;p&gt;Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-48867</guid>
    </item>
    <item>
      <title>GHSA-cfrr-p6rw-prf5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cfrr-p6rw-prf5</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;dmaengine: idxd: Prevent use after free on completion memory&lt;/p&gt;
&lt;p&gt;On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;gt;
	drv_disable_wq() -&amp;gt;
		idxd_wq_free_irq() -&amp;gt;
			idxd_flush_pending_descs().&lt;/p&gt;
&lt;p&gt;If there are any descriptors present that need to be flushed this
flow triggers a &amp;#34;not present&amp;#34; page fault as below:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&lt;/p&gt;
&lt;p&gt;The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;gt;idxd_wq_free_resources()&lt;/p&gt;
&lt;p&gt;Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;dmaengine: idxd: Prevent use after free on completion memory&lt;/p&gt;
&lt;p&gt;On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;gt;
	drv_disable_wq() -&amp;gt;
		idxd_wq_free_irq() -&amp;gt;
			idxd_flush_pending_descs().&lt;/p&gt;
&lt;p&gt;If there are any descriptors present that need to be flushed this
flow triggers a &amp;#34;not present&amp;#34; page fault as below:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&lt;/p&gt;
&lt;p&gt;The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;gt;idxd_wq_free_resources()&lt;/p&gt;
&lt;p&gt;Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cfrr-p6rw-prf5</guid>
    </item>
    <item>
      <title>OESA-2024-2125 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-2125</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
dmaengine: idxd: Prevent use after free on completion memory&#13;
&#13;
On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;amp;gt;
	drv_disable_wq() -&amp;amp;gt;
		idxd_wq_free_irq() -&amp;amp;gt;
			idxd_flush_pending_descs().&#13;
&#13;
If there are any descriptors present that need to be flushed this
flow triggers a &amp;amp;quot;not present&amp;amp;quot; page fault as below:&#13;
&#13;
 BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&#13;
&#13;
The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;amp;gt;idxd_wq_free_resources()&#13;
&#13;
Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.(CVE-2022-48867)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
drm/vmwgfx: Remove rcu locks from user resources&#13;
&#13;
User resource lookups used rcu to avoid two extra atomics. Unfortunately
the rcu paths were buggy and it was easy to make the driver crash by
submitting command buffers from two different threads. Because the
lookups never show up in performance profiles replace them with a
regular spin lock w…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
dmaengine: idxd: Prevent use after free on completion memory&#13;
&#13;
On driver unload any pending descriptors are flushed at the
time the interrupt is freed:
idxd_dmaengine_drv_remove() -&amp;amp;gt;
	drv_disable_wq() -&amp;amp;gt;
		idxd_wq_free_irq() -&amp;amp;gt;
			idxd_flush_pending_descs().&#13;
&#13;
If there are any descriptors present that need to be flushed this
flow triggers a &amp;amp;quot;not present&amp;amp;quot; page fault as below:&#13;
&#13;
 BUG: unable to handle page fault for address: ff391c97c70c9040
 #PF: supervisor read access in kernel mode
 #PF: error_code(0x0000) - not-present page&#13;
&#13;
The address that triggers the fault is the address of the
descriptor that was freed moments earlier via:
drv_disable_wq()-&amp;amp;gt;idxd_wq_free_resources()&#13;
&#13;
Fix the use after free by freeing the descriptors after any possible
usage. This is done after idxd_wq_reset() to ensure that the memory
remains accessible during possible completion writes by the device.(CVE-2022-48867)&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
drm/vmwgfx: Remove rcu locks from user resources&#13;
&#13;
User resource lookups used rcu to avoid two extra atomics. Unfortunately
the rcu paths were buggy and it was easy to make the driver crash by
submitting command buffers from two different threads. Because the
lookups never show up in performance profiles replace them with a
regular spin lock w…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-2125</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-48867</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48867</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 66 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Prevent use after free on completion memory On driver unload any pending descriptors are flushed at the time the interrupt is freed: idxd_dmaengine_drv_remove() -&amp;gt; 	drv_disable_wq() -&amp;gt; 		idxd_wq_free_irq() -&amp;gt; 			idxd_flush_pending_descs(). If there are any descriptors present that need to be flushed this flow triggers a &amp;#34;not present&amp;#34; page fault as below:  BUG: unable to handle page fault for address: ff391c97c70c9040  #PF: supervisor read access in kernel mode  #PF: error_code(0x0000) - not-present page The address that triggers the fault is the address of the descriptor that was freed moments earlier via: drv_disable_wq()-&amp;gt;idxd_wq_free_resources() Fix the use after free by freeing the descriptors after any possible usage. This is done after idxd_wq_reset() to ensure that the memory remains accessible during possible completion writes by the device.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 66 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Prevent use after free on completion memory On driver unload any pending descriptors are flushed at the time the interrupt is freed: idxd_dmaengine_drv_remove() -&amp;gt; 	drv_disable_wq() -&amp;gt; 		idxd_wq_free_irq() -&amp;gt; 			idxd_flush_pending_descs(). If there are any descriptors present that need to be flushed this flow triggers a &amp;#34;not present&amp;#34; page fault as below:  BUG: unable to handle page fault for address: ff391c97c70c9040  #PF: supervisor read access in kernel mode  #PF: error_code(0x0000) - not-present page The address that triggers the fault is the address of the descriptor that was freed moments earlier via: drv_disable_wq()-&amp;gt;idxd_wq_free_resources() Fix the use after free by freeing the descriptors after any possible usage. This is done after idxd_wq_reset() to ensure that the memory remains accessible during possible completion writes by the device.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-48867</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1888 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1888</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder einen unspezifischen Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder einen unspezifischen Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1888</guid>
    </item>
  </channel>
</rss>
