<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 03:18:03 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-10410</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-10410</link>
      <description>bdu:2024-10410</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-10410</guid>
    </item>
    <item>
      <title>BELL-CVE-2023-52851</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2023-52851</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2023-52851</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0496 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0496</link>
      <description>certfr-2024-avi-0496</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0496</guid>
    </item>
    <item>
      <title>EUVD-2026-311717</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-311717</link>
      <description>EUVD-2026-311717</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-311717</guid>
    </item>
    <item>
      <title>fkie_cve-2023-52851</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-52851</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF&lt;/p&gt;
&lt;p&gt;In the unlikely event that workqueue allocation fails and returns NULL in
mlx5_mkey_cache_init(), delete the call to
mlx5r_umr_resource_cleanup() (which frees the QP) in
mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double
free of the same QP when __mlx5_ib_add() does its cleanup.&lt;/p&gt;
&lt;p&gt;Resolves a splat:&lt;/p&gt;
&lt;p&gt;Syzkaller reported a UAF in ib_destroy_qp_user&lt;/p&gt;
&lt;p&gt;workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR
   infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):
   failed to create work queue
   infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):
   mr cache init failed -12
   ==================================================================
   BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642&lt;/p&gt;
&lt;p&gt;Call Trace:
   &amp;lt;TASK&amp;gt;
   kasan_report (mm/kasan/report.c:590)
   ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)
   __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)
   mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)
   ...
   &amp;lt;/TASK&amp;gt;&lt;/p&gt;
&lt;p&gt;Allocated by task 1642:
   __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026
   mm/slab_common.c:1039)
   create_qp (./include/li…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF&lt;/p&gt;
&lt;p&gt;In the unlikely event that workqueue allocation fails and returns NULL in
mlx5_mkey_cache_init(), delete the call to
mlx5r_umr_resource_cleanup() (which frees the QP) in
mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double
free of the same QP when __mlx5_ib_add() does its cleanup.&lt;/p&gt;
&lt;p&gt;Resolves a splat:&lt;/p&gt;
&lt;p&gt;Syzkaller reported a UAF in ib_destroy_qp_user&lt;/p&gt;
&lt;p&gt;workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR
   infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):
   failed to create work queue
   infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):
   mr cache init failed -12
   ==================================================================
   BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642&lt;/p&gt;
&lt;p&gt;Call Trace:
   &amp;lt;TASK&amp;gt;
   kasan_report (mm/kasan/report.c:590)
   ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)
   __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)
   mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)
   ...
   &amp;lt;/TASK&amp;gt;&lt;/p&gt;
&lt;p&gt;Allocated by task 1642:
   __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026
   mm/slab_common.c:1039)
   create_qp (./include/li…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-52851</guid>
    </item>
    <item>
      <title>GHSA-5jrf-78p7-hw2r</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-5jrf-78p7-hw2r</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF&lt;/p&gt;
&lt;p&gt;In the unlikely event that workqueue allocation fails and returns NULL in
mlx5_mkey_cache_init(), delete the call to
mlx5r_umr_resource_cleanup() (which frees the QP) in
mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double
free of the same QP when __mlx5_ib_add() does its cleanup.&lt;/p&gt;
&lt;p&gt;Resolves a splat:&lt;/p&gt;
&lt;p&gt;Syzkaller reported a UAF in ib_destroy_qp_user&lt;/p&gt;
&lt;p&gt;workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR
   infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):
   failed to create work queue
   infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):
   mr cache init failed -12
   ==================================================================
   BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642&lt;/p&gt;
&lt;p&gt;Call Trace:
   &amp;lt;TASK&amp;gt;
   kasan_report (mm/kasan/report.c:590)
   ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)
   __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)
   mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)
   ...
   &amp;lt;/TASK&amp;gt;&lt;/p&gt;
&lt;p&gt;Allocated by task 1642:
   __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026
   mm/slab_common.c:1039)
   create_qp (./include/li…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF&lt;/p&gt;
&lt;p&gt;In the unlikely event that workqueue allocation fails and returns NULL in
mlx5_mkey_cache_init(), delete the call to
mlx5r_umr_resource_cleanup() (which frees the QP) in
mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double
free of the same QP when __mlx5_ib_add() does its cleanup.&lt;/p&gt;
&lt;p&gt;Resolves a splat:&lt;/p&gt;
&lt;p&gt;Syzkaller reported a UAF in ib_destroy_qp_user&lt;/p&gt;
&lt;p&gt;workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR
   infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):
   failed to create work queue
   infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):
   mr cache init failed -12
   ==================================================================
   BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642&lt;/p&gt;
&lt;p&gt;Call Trace:
   &amp;lt;TASK&amp;gt;
   kasan_report (mm/kasan/report.c:590)
   ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)
   mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)
   __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)
   mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)
   ...
   &amp;lt;/TASK&amp;gt;&lt;/p&gt;
&lt;p&gt;Allocated by task 1642:
   __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026
   mm/slab_common.c:1039)
   create_qp (./include/li…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-5jrf-78p7-hw2r</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:2008-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:2008-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:2008-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-52851</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-52851</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 67 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF In the unlikely event that workqueue allocation fails and returns NULL in mlx5_mkey_cache_init(), delete the call to mlx5r_umr_resource_cleanup() (which frees the QP) in mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double free of the same QP when __mlx5_ib_add() does its cleanup. Resolves a splat:    Syzkaller reported a UAF in ib_destroy_qp_user    workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR    infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):    failed to create work queue    infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):    mr cache init failed -12    ==================================================================    BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)    Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642    Call Trace:    &amp;lt;TASK&amp;gt;    kasan_report (mm/kasan/report.c:590)    ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)    mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)    __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)    mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)    ...    &amp;lt;/TASK&amp;gt;    Allocated by task 1642:    __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026    mm/slab_common.c:1039)    create_qp (./include/linux/sla…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 67 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: IB/mlx5: Fix init stage error handling to avoid double free of same QP and UAF In the unlikely event that workqueue allocation fails and returns NULL in mlx5_mkey_cache_init(), delete the call to mlx5r_umr_resource_cleanup() (which frees the QP) in mlx5_ib_stage_post_ib_reg_umr_init().  This will avoid attempted double free of the same QP when __mlx5_ib_add() does its cleanup. Resolves a splat:    Syzkaller reported a UAF in ib_destroy_qp_user    workqueue: Failed to create a rescuer kthread for wq &amp;#34;mkey_cache&amp;#34;: -EINTR    infiniband mlx5_0: mlx5_mkey_cache_init:981:(pid 1642):    failed to create work queue    infiniband mlx5_0: mlx5_ib_stage_post_ib_reg_umr_init:4075:(pid 1642):    mr cache init failed -12    ==================================================================    BUG: KASAN: slab-use-after-free in ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)    Read of size 8 at addr ffff88810da310a8 by task repro_upstream/1642    Call Trace:    &amp;lt;TASK&amp;gt;    kasan_report (mm/kasan/report.c:590)    ib_destroy_qp_user (drivers/infiniband/core/verbs.c:2073)    mlx5r_umr_resource_cleanup (drivers/infiniband/hw/mlx5/umr.c:198)    __mlx5_ib_add (drivers/infiniband/hw/mlx5/main.c:4178)    mlx5r_probe (drivers/infiniband/hw/mlx5/main.c:4402)    ...    &amp;lt;/TASK&amp;gt;    Allocated by task 1642:    __kmalloc (./include/linux/kasan.h:198 mm/slab_common.c:1026    mm/slab_common.c:1039)    create_qp (./include/linux/sla…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-52851</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1197 — Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service und unspezifische Angriffe</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1197</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder unspezifische Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder unspezifische Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1197</guid>
    </item>
  </channel>
</rss>
