<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:35:59 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:19102 — Moderate: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:19102</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: bpftool, AlmaLinux:8: kernel, AlmaLinux:8: kernel-abi-stablelists, AlmaLinux:8: kernel-core, AlmaLinux:8: kernel-cross-headers, AlmaLinux:8: kernel-debug, AlmaLinux:8: kernel-debug-core, AlmaLinux:8: kernel-debug-devel, AlmaLinux:8: kernel-debug-modules, AlmaLinux:8: kernel-debug-modules-extra and 15 more&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp (CVE-2023-53297)
  * kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare (CVE-2025-39817)
  * kernel: Bluetooth: Fix potential use-after-free when clear keys (CVE-2023-53386)
  * kernel: Bluetooth: L2CAP: Fix user-after-free (CVE-2022-50386)
  * kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() (CVE-2025-39849)
  * kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path (CVE-2025-39841)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: bpftool, AlmaLinux:8: kernel, AlmaLinux:8: kernel-abi-stablelists, AlmaLinux:8: kernel-core, AlmaLinux:8: kernel-cross-headers, AlmaLinux:8: kernel-debug, AlmaLinux:8: kernel-debug-core, AlmaLinux:8: kernel-debug-devel, AlmaLinux:8: kernel-debug-modules, AlmaLinux:8: kernel-debug-modules-extra and 15 more&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp (CVE-2023-53297)
  * kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare (CVE-2025-39817)
  * kernel: Bluetooth: Fix potential use-after-free when clear keys (CVE-2023-53386)
  * kernel: Bluetooth: L2CAP: Fix user-after-free (CVE-2022-50386)
  * kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() (CVE-2025-39849)
  * kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path (CVE-2025-39841)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:19102</guid>
    </item>
    <item>
      <title>bdu:2026-03330</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-03330</link>
      <description>bdu:2026-03330</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-03330</guid>
    </item>
    <item>
      <title>BELL-CVE-2023-53386</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2023-53386</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2023-53386</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0895 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0895</link>
      <description>certfr-2025-avi-0895</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0895</guid>
    </item>
    <item>
      <title>EUVD-2026-345198</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-345198</link>
      <description>EUVD-2026-345198</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-345198</guid>
    </item>
    <item>
      <title>fkie_cve-2023-53386</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-53386</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;Bluetooth: Fix potential use-after-free when clear keys&lt;/p&gt;
&lt;p&gt;Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in
hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu()
call.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;Bluetooth: Fix potential use-after-free when clear keys&lt;/p&gt;
&lt;p&gt;Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in
hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu()
call.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-53386</guid>
    </item>
    <item>
      <title>GHSA-m38w-46xg-v336</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m38w-46xg-v336</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;Bluetooth: Fix potential use-after-free when clear keys&lt;/p&gt;
&lt;p&gt;Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in
hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu()
call.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;Bluetooth: Fix potential use-after-free when clear keys&lt;/p&gt;
&lt;p&gt;Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in
hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu()
call.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m38w-46xg-v336</guid>
    </item>
    <item>
      <title>OESA-2025-2349 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2349</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;tracing: Fix reading strings from synthetic events&lt;/p&gt;
&lt;p&gt;The follow commands caused a crash:&lt;/p&gt;
&lt;p&gt;# cd /sys/kernel/tracing
  # echo &amp;amp;apos;s:open char file[]&amp;amp;apos; &amp;amp;gt; dynamic_events
  # echo &amp;amp;apos;hist:keys=common_pid:file=filename:onchange($file).trace(open,$file)&amp;amp;apos; &amp;amp;gt; events/syscalls/sys_enter_openat/trigger&amp;amp;apos;
  # echo 1 &amp;amp;gt; events/synthetic/open/enable&lt;/p&gt;
&lt;p&gt;BOOM!&lt;/p&gt;
&lt;p&gt;The problem is that the synthetic event field &amp;amp;quot;char file[]&amp;amp;quot; will read
the value given to it as a string without any memory checks to make sure
the address is valid. The above example will pass in the user space
address and the sythetic event code will happily call strlen() on it
and then strscpy() where either one will cause an oops when accessing
user space addresses.&lt;/p&gt;
&lt;p&gt;Use the helper functions from trace_kprobe and trace_eprobe that can
read strings safely (and actually succeed when the address is from user
space and the memory is mapped in).&lt;/p&gt;
&lt;p&gt;Now the above can show:&lt;/p&gt;
&lt;p&gt;packagekitd-1721    [000] ...2.   104.597170: open: file=/usr/lib/rpm/fileattrs/cmake.attr
    in:imjournal-978     [006] ...2.   104.599642: open: file=/var/lib/rsyslog/imjournal.state.tmp
     packagekitd-1721    [000] ...2.   104.626308: open: file=/usr/lib/rpm/fileattrs/debuginfo.attr(CVE-2022-50255)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;kprobes: Fix check…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;tracing: Fix reading strings from synthetic events&lt;/p&gt;
&lt;p&gt;The follow commands caused a crash:&lt;/p&gt;
&lt;p&gt;# cd /sys/kernel/tracing
  # echo &amp;amp;apos;s:open char file[]&amp;amp;apos; &amp;amp;gt; dynamic_events
  # echo &amp;amp;apos;hist:keys=common_pid:file=filename:onchange($file).trace(open,$file)&amp;amp;apos; &amp;amp;gt; events/syscalls/sys_enter_openat/trigger&amp;amp;apos;
  # echo 1 &amp;amp;gt; events/synthetic/open/enable&lt;/p&gt;
&lt;p&gt;BOOM!&lt;/p&gt;
&lt;p&gt;The problem is that the synthetic event field &amp;amp;quot;char file[]&amp;amp;quot; will read
the value given to it as a string without any memory checks to make sure
the address is valid. The above example will pass in the user space
address and the sythetic event code will happily call strlen() on it
and then strscpy() where either one will cause an oops when accessing
user space addresses.&lt;/p&gt;
&lt;p&gt;Use the helper functions from trace_kprobe and trace_eprobe that can
read strings safely (and actually succeed when the address is from user
space and the memory is mapped in).&lt;/p&gt;
&lt;p&gt;Now the above can show:&lt;/p&gt;
&lt;p&gt;packagekitd-1721    [000] ...2.   104.597170: open: file=/usr/lib/rpm/fileattrs/cmake.attr
    in:imjournal-978     [006] ...2.   104.599642: open: file=/var/lib/rsyslog/imjournal.state.tmp
     packagekitd-1721    [000] ...2.   104.626308: open: file=/usr/lib/rpm/fileattrs/debuginfo.attr(CVE-2022-50255)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;kprobes: Fix check…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2349</guid>
    </item>
    <item>
      <title>RHSA-2025:19102 — Red Hat Security Advisory: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:19102</link>
      <description>&lt;p&gt;kernel: Bluetooth: L2CAP: Fix user-after-free kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp kernel: Bluetooth: Fix potential use-after-free when clear keys kernel: x86/mm: Fix flush_tlb_range() when used for zapping normal PMDs kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: Bluetooth: L2CAP: Fix user-after-free kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp kernel: Bluetooth: Fix potential use-after-free when clear keys kernel: x86/mm: Fix flush_tlb_range() when used for zapping normal PMDs kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:19102</guid>
    </item>
    <item>
      <title>RHSA-2025:19103 — Red Hat Security Advisory: kernel-rt security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:19103</link>
      <description>&lt;p&gt;kernel: Bluetooth: L2CAP: Fix user-after-free kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp kernel: Bluetooth: Fix potential use-after-free when clear keys kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: Bluetooth: L2CAP: Fix user-after-free kernel: Bluetooth: L2CAP: fix &amp;#34;bad unlock balance&amp;#34; in l2cap_disconnect_rsp kernel: Bluetooth: Fix potential use-after-free when clear keys kernel: efivarfs: Fix slab-out-of-bounds in efivarfs_d_compare kernel: scsi: lpfc: Fix buffer free/clear order in deferred receive path kernel: wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result()&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:19103</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:03600-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:03600-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:03600-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-53386</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-53386</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 115 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix potential use-after-free when clear keys Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu() call.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 115 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix potential use-after-free when clear keys Similar to commit c5d2b6fa26b5 (&amp;#34;Bluetooth: Fix use-after-free in hci_remove_ltk/hci_remove_irk&amp;#34;). We can not access k after kfree_rcu() call.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-53386</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2092 — Linux Kernel: Mehrere Schwachstellen ermöglichen Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2092</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und um nicht nähere beschriebene Effekte zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und um nicht nähere beschriebene Effekte zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2092</guid>
    </item>
  </channel>
</rss>
