<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:54:27 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-03731</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-03731</link>
      <description>bdu:2024-03731</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-03731</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0326 — De multiples vulnérabilités ont été découvertes dans Oracle MySQL. Elles
permettent à un attaquant de provoquer un déni…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0326</link>
      <description>certfr-2024-avi-0326</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0326</guid>
    </item>
    <item>
      <title>cnvd-2024-20806</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-20806</link>
      <description>cnvd-2024-20806</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-20806</guid>
    </item>
    <item>
      <title>EUVD-2026-217170</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-217170</link>
      <description>EUVD-2026-217170</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-217170</guid>
    </item>
    <item>
      <title>fkie_cve-2024-21069</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-21069</link>
      <description>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-21069</guid>
    </item>
    <item>
      <title>GHSA-wh99-p93p-g825</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wh99-p93p-g825</link>
      <description>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wh99-p93p-g825</guid>
    </item>
    <item>
      <title>gsd-2024-21069</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2024-21069</link>
      <description>gsd-2024-21069</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2024-21069</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-21069 — Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affect…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-21069</link>
      <description>msrc_CVE-2024-21069</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-21069</guid>
    </item>
    <item>
      <title>OESA-2024-1558 — mysql security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-1558</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP2: mysql&lt;/p&gt;
&lt;p&gt;The MySQL(TM) software delivers a very fast, multi-threaded, multi-user, and robust SQL (Structured Query Language) database server. MySQL Server is intended for mission-critical, heavy-load production systems as well as for embedding into mass-deployed software. MySQL is a trademark of Oracle and/or its affiliates&#13;
&#13;
Security Fix(es):&#13;
&#13;
Issue summary: The POLY1305 MAC (message authentication code) implementation
contains a bug that might corrupt the internal state of applications running
on PowerPC CPU based platforms if the CPU provides vector instructions.&#13;
&#13;
Impact summary: If an attacker can influence whether the POLY1305 MAC
algorithm is used, the application state might be corrupted with various
application dependent consequences.&#13;
&#13;
The POLY1305 MAC (message authentication code) implementation in OpenSSL for
PowerPC CPUs restores the contents of vector registers in a different order
than they are saved. Thus the contents of some of these vector registers
are corrupted when returning to the caller. The vulnerable code is used only
on newer PowerPC processors supporting the PowerISA 2.07 instructions.&#13;
&#13;
The consequences of this kind of internal application state corruption can
be various - from no consequences, if the calling application does not
depend on the contents of non-volatile XMM registers at all, to the worst
consequences, where the attacker could get complete control of the application
process. However unless the compiler uses the vector registers for stor…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP2: mysql&lt;/p&gt;
&lt;p&gt;The MySQL(TM) software delivers a very fast, multi-threaded, multi-user, and robust SQL (Structured Query Language) database server. MySQL Server is intended for mission-critical, heavy-load production systems as well as for embedding into mass-deployed software. MySQL is a trademark of Oracle and/or its affiliates&#13;
&#13;
Security Fix(es):&#13;
&#13;
Issue summary: The POLY1305 MAC (message authentication code) implementation
contains a bug that might corrupt the internal state of applications running
on PowerPC CPU based platforms if the CPU provides vector instructions.&#13;
&#13;
Impact summary: If an attacker can influence whether the POLY1305 MAC
algorithm is used, the application state might be corrupted with various
application dependent consequences.&#13;
&#13;
The POLY1305 MAC (message authentication code) implementation in OpenSSL for
PowerPC CPUs restores the contents of vector registers in a different order
than they are saved. Thus the contents of some of these vector registers
are corrupted when returning to the caller. The vulnerable code is used only
on newer PowerPC processors supporting the PowerISA 2.07 instructions.&#13;
&#13;
The consequences of this kind of internal application state corruption can
be various - from no consequences, if the calling application does not
depend on the contents of non-volatile XMM registers at all, to the worst
consequences, where the attacker could get complete control of the application
process. However unless the compiler uses the vector registers for stor…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-1558</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-21069</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-21069</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: mysql-5.5, Ubuntu:Pro:16.04:LTS: mysql-5.7, Ubuntu:16.04:LTS: percona-server-5.6, Ubuntu:16.04:LTS: percona-xtradb-cluster-5.6, Ubuntu:Pro:18.04:LTS: mysql-5.7, Ubuntu:20.04:LTS: mysql-8.0, Ubuntu:22.04:LTS: mysql-8.0, Ubuntu:24.04:LTS: mysql-8.0&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: mysql-5.5, Ubuntu:Pro:16.04:LTS: mysql-5.7, Ubuntu:16.04:LTS: percona-server-5.6, Ubuntu:16.04:LTS: percona-xtradb-cluster-5.6, Ubuntu:Pro:18.04:LTS: mysql-5.7, Ubuntu:20.04:LTS: mysql-8.0, Ubuntu:22.04:LTS: mysql-8.0, Ubuntu:24.04:LTS: mysql-8.0&lt;/p&gt;
&lt;p&gt;Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL).  Supported versions that are affected are 8.0.36 and prior and  8.3.0 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server.  Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-21069</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-0894 — Oracle MySQL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0894</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Oracle MySQL ausnutzen, um die Vertraulichkeit, Integrität und Verfügbarkeit zu gefährden.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-0894</guid>
    </item>
  </channel>
</rss>
