<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 07:07:35 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-09483</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-09483</link>
      <description>bdu:2024-09483</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-09483</guid>
    </item>
    <item>
      <title>EUVD-2026-373911</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-373911</link>
      <description>EUVD-2026-373911</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-373911</guid>
    </item>
    <item>
      <title>fkie_cve-2024-1300</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-1300</link>
      <description>&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw allows attackers to send TLS client hello messages with fake server names, triggering a JVM out-of-memory error.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw allows attackers to send TLS client hello messages with fake server names, triggering a JVM out-of-memory error.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-1300</guid>
    </item>
    <item>
      <title>GHSA-9ph3-v2vh-3qx7 — Eclipse Vert.x vulnerable to a memory leak in TCP servers</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-9ph3-v2vh-3qx7</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.vertx:vertx-core&lt;/p&gt;
&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw allows attackers to send TLS client hello messages with fake server names, triggering a JVM out-of-memory error.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Maven: io.vertx:vertx-core&lt;/p&gt;
&lt;p&gt;A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. When processing an unknown SNI server name assigned the default certificate instead of a mapped certificate, the SSL context is erroneously cached in the server name map, leading to memory exhaustion. This flaw allows attackers to send TLS client hello messages with fake server names, triggering a JVM out-of-memory error.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-9ph3-v2vh-3qx7</guid>
    </item>
    <item>
      <title>gsd-2024-1300</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-1300</link>
      <description>gsd-2024-1300</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-1300</guid>
    </item>
    <item>
      <title>RHSA-2024:1662 — Red Hat Security Advisory: Red Hat build of Quarkus 3.2.11 release and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:1662</link>
      <description>&lt;p&gt;io.vertx/vertx-core: memory leak due to the use of Netty FastThreadLocal data structures in Vertx io.vertx:vertx-core: memory leak when a TCP server is configured with TLS and SNI support pgjdbc: PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE quarkus: security checks for some inherited endpoints performed after serialization in RESTEasy Reactive may trigger a denial of service quarkus: information leak in annotation commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file commons-compress: OutOfMemoryError unpacking broken Pack200 file&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;io.vertx/vertx-core: memory leak due to the use of Netty FastThreadLocal data structures in Vertx io.vertx:vertx-core: memory leak when a TCP server is configured with TLS and SNI support pgjdbc: PostgreSQL JDBC Driver allows attacker to inject SQL if using PreferQueryMode=SIMPLE quarkus: security checks for some inherited endpoints performed after serialization in RESTEasy Reactive may trigger a denial of service quarkus: information leak in annotation commons-compress: Denial of service caused by an infinite loop for a corrupted DUMP file commons-compress: OutOfMemoryError unpacking broken Pack200 file&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:1662</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0818 — Red Hat Integration: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0818</link>
      <description>&lt;p&gt;Ein entfernter authentifizierter oder anonymer Angreifer kann mehrere Schwachstellen in Red Hat Integration ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder Sicherheitsmaßnahmen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter authentifizierter oder anonymer Angreifer kann mehrere Schwachstellen in Red Hat Integration ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder Sicherheitsmaßnahmen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0818</guid>
    </item>
  </channel>
</rss>
