<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 23:36:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2023-00628</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-00628</link>
      <description>bdu:2023-00628</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-00628</guid>
    </item>
    <item>
      <title>certfr-2023-avi-0193 — De multiples vulnérabilités ont été corrigées dans le noyau Linux de
&lt;span class="textit"&gt;DebianLTS&lt;/span&gt;. Elles perme…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2023-avi-0193</link>
      <description>certfr-2023-avi-0193</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2023-avi-0193</guid>
    </item>
    <item>
      <title>EUVD-2026-6500</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-6500</link>
      <description>EUVD-2026-6500</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-6500</guid>
    </item>
    <item>
      <title>fkie_cve-2023-0240</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-0240</link>
      <description>&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation.&lt;/p&gt;
&lt;p&gt;In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation.&lt;/p&gt;
&lt;p&gt;In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-0240</guid>
    </item>
    <item>
      <title>GHSA-rr76-fj9v-7w82</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-rr76-fj9v-7w82</link>
      <description>&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-rr76-fj9v-7w82</guid>
    </item>
    <item>
      <title>gsd-2023-0240</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-0240</link>
      <description>gsd-2023-0240</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-0240</guid>
    </item>
    <item>
      <title>OESA-2023-1144 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1144</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
There is a logic error in io_uring&amp;amp;apos;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.(CVE-2023-0240)&#13;
&#13;
A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue occurs when a user triggers ioctls, such as VIDIOC_S_DV_TIMINGS ioctl. This could allow a local user to crash the system if vivid test code enabled.(CVE-2023-0615)&#13;
&#13;
The Linux kernel does not correctly mitigate SMT attacks, as discovered
through a strange pattern in the kernel API using STIBP as a mitigation[1
&amp;amp;lt;https://docs.kernel.org/userspace-api/spec_ctrl.html&amp;amp;gt;], leaving the
process exposed for a short period of time after a syscall. The kernel also
does not issue an IBPB immediately during the syscall.
The ib_prctl_set [2
&amp;amp;lt;https://elixir.bootlin.com/linux/v5.15.56/source/arch/x86/kernel/cpu/bugs.c#L1467&amp;amp;gt;]function
updates the Thread Information Flags (TIFs) for the task and updates the
SPEC_CTRL MS…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
There is a logic error in io_uring&amp;amp;apos;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.(CVE-2023-0240)&#13;
&#13;
A memory leak flaw and potential divide by zero and Integer overflow was found in the Linux kernel V4L2 and vivid test code functionality. This issue occurs when a user triggers ioctls, such as VIDIOC_S_DV_TIMINGS ioctl. This could allow a local user to crash the system if vivid test code enabled.(CVE-2023-0615)&#13;
&#13;
The Linux kernel does not correctly mitigate SMT attacks, as discovered
through a strange pattern in the kernel API using STIBP as a mitigation[1
&amp;amp;lt;https://docs.kernel.org/userspace-api/spec_ctrl.html&amp;amp;gt;], leaving the
process exposed for a short period of time after a syscall. The kernel also
does not issue an IBPB immediately during the syscall.
The ib_prctl_set [2
&amp;amp;lt;https://elixir.bootlin.com/linux/v5.15.56/source/arch/x86/kernel/cpu/bugs.c#L1467&amp;amp;gt;]function
updates the Thread Information Flags (TIFs) for the task and updates the
SPEC_CTRL MS…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1144</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-0240</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-0240</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 30 more&lt;/p&gt;
&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 30 more&lt;/p&gt;
&lt;p&gt;There is a logic error in io_uring&amp;#39;s implementation which can be used to trigger a use-after-free vulnerability leading to privilege escalation. In the io_prep_async_work function the assumption that the last io_grab_identity call cannot return false is not true, and in this case the function will use the init_cred or the previous linked requests identity to do operations instead of using the current identity. This can lead to reference counting issues causing use-after-free. We recommend upgrading past version 5.10.161.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-0240</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0227 — Linux Kernel: Schwachstelle ermöglicht Privilegieneskalation</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0227</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle im Linux Kernel ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle im Linux Kernel ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0227</guid>
    </item>
  </channel>
</rss>
