<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 18:05:41 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-15009</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-15009</link>
      <description>bdu:2025-15009</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-15009</guid>
    </item>
    <item>
      <title>BELL-CVE-2023-39179</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2023-39179</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2023-39179</guid>
    </item>
    <item>
      <title>cnvd-2024-45870</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-45870</link>
      <description>cnvd-2024-45870</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-45870</guid>
    </item>
    <item>
      <title>EUVD-2026-202309</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-202309</link>
      <description>EUVD-2026-202309</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-202309</guid>
    </item>
    <item>
      <title>fkie_cve-2023-39179</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-39179</link>
      <description>&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-39179</guid>
    </item>
    <item>
      <title>GHSA-jq6r-jfg5-r4xg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jq6r-jfg5-r4xg</link>
      <description>&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jq6r-jfg5-r4xg</guid>
    </item>
    <item>
      <title>gsd-2023-39179</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-39179</link>
      <description>gsd-2023-39179</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-39179</guid>
    </item>
    <item>
      <title>OESA-2025-1963 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1963</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: act_ct: fix ref leak when switching zones&lt;/p&gt;
&lt;p&gt;When switching zones or network namespaces without doing a ct clear in
between, it is now leaking a reference to the old ct entry. That&amp;amp;apos;s
because tcf_ct_skb_nfct_cached() returns false and
tcf_ct_flow_table_lookup() may simply overwrite it.&lt;/p&gt;
&lt;p&gt;The fix is to, as the ct entry is not reusable, free it already at
tcf_ct_skb_nfct_cached().(CVE-2022-49183)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: annotate races around sk-&amp;amp;gt;sk_bound_dev_if&lt;/p&gt;
&lt;p&gt;UDP sendmsg() is lockless, and reads sk-&amp;amp;gt;sk_bound_dev_if while
this field can be changed by another thread.&lt;/p&gt;
&lt;p&gt;Adds minimal annotations to avoid KCSAN splats for UDP.
Following patches will add more annotations to potential lockless readers.&lt;/p&gt;
&lt;p&gt;BUG: KCSAN: data-race in __ip6_datagram_connect / udpv6_sendmsg&lt;/p&gt;
&lt;p&gt;write to 0xffff888136d47a94 of 4 bytes by task 7681 on cpu 0:
 __ip6_datagram_connect+0x6e2/0x930 net/ipv6/datagram.c:221
 ip6_datagram_connect+0x2a/0x40 net/ipv6/datagram.c:272
 inet_dgram_connect+0x107/0x190 net/ipv4/af_inet.c:576
 __sys_connect_file net/socket.c:1900 [inline]
 __sys_connect+0x197/0x1b0 net/socket.c:1917
 __do_sys_connect net/socket.c:1927 [inline]
 __se_sys_connect net/socket.c:1924 [inline]
 __x64_sys_connect+0x3d/0x50 net/socket.c:1924
 do_syscall_x64 arch/x86/entry/common.c:50 [inline]
 d…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: act_ct: fix ref leak when switching zones&lt;/p&gt;
&lt;p&gt;When switching zones or network namespaces without doing a ct clear in
between, it is now leaking a reference to the old ct entry. That&amp;amp;apos;s
because tcf_ct_skb_nfct_cached() returns false and
tcf_ct_flow_table_lookup() may simply overwrite it.&lt;/p&gt;
&lt;p&gt;The fix is to, as the ct entry is not reusable, free it already at
tcf_ct_skb_nfct_cached().(CVE-2022-49183)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: annotate races around sk-&amp;amp;gt;sk_bound_dev_if&lt;/p&gt;
&lt;p&gt;UDP sendmsg() is lockless, and reads sk-&amp;amp;gt;sk_bound_dev_if while
this field can be changed by another thread.&lt;/p&gt;
&lt;p&gt;Adds minimal annotations to avoid KCSAN splats for UDP.
Following patches will add more annotations to potential lockless readers.&lt;/p&gt;
&lt;p&gt;BUG: KCSAN: data-race in __ip6_datagram_connect / udpv6_sendmsg&lt;/p&gt;
&lt;p&gt;write to 0xffff888136d47a94 of 4 bytes by task 7681 on cpu 0:
 __ip6_datagram_connect+0x6e2/0x930 net/ipv6/datagram.c:221
 ip6_datagram_connect+0x2a/0x40 net/ipv6/datagram.c:272
 inet_dgram_connect+0x107/0x190 net/ipv4/af_inet.c:576
 __sys_connect_file net/socket.c:1900 [inline]
 __sys_connect+0x197/0x1b0 net/socket.c:1917
 __do_sys_connect net/socket.c:1927 [inline]
 __se_sys_connect net/socket.c:1924 [inline]
 __x64_sys_connect+0x3d/0x50 net/socket.c:1924
 do_syscall_x64 arch/x86/entry/common.c:50 [inline]
 d…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1963</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-39179</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-39179</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 159 more&lt;/p&gt;
&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 159 more&lt;/p&gt;
&lt;p&gt;A flaw was found within the handling of SMB2 read requests in the kernel ksmbd module. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this to disclose sensitive information on affected installations of Linux. Only systems with ksmbd enabled are vulnerable to this CVE.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-39179</guid>
    </item>
  </channel>
</rss>
