<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 03:41:15 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-02205</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-02205</link>
      <description>bdu:2026-02205</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-02205</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-43900</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-43900</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-43900</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0779 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de SUSE. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0779</link>
      <description>certfr-2024-avi-0779</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0779</guid>
    </item>
    <item>
      <title>EUVD-2026-313160</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-313160</link>
      <description>EUVD-2026-313160</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-313160</guid>
    </item>
    <item>
      <title>fkie_cve-2024-43900</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-43900</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;media: xc2028: avoid use-after-free in load_firmware_cb()&lt;/p&gt;
&lt;p&gt;syzkaller reported use-after-free in load_firmware_cb() [1].
The reason is because the module allocated a struct tuner in tuner_probe(),
and then the module initialization failed, the struct tuner was released.
A worker which created during module initialization accesses this struct
tuner later, it caused use-after-free.&lt;/p&gt;
&lt;p&gt;The process is as follows:&lt;/p&gt;
&lt;p&gt;task-6504           worker_thread
tuner_probe                             &amp;lt;= alloc dvb_frontend [2]
...
request_firmware_nowait                 &amp;lt;= create a worker
...
tuner_remove                            &amp;lt;= free dvb_frontend
...
                    request_firmware_work_func  &amp;lt;= the firmware is ready
                    load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed&lt;/p&gt;
&lt;p&gt;To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is
null, report a warning and just return.&lt;/p&gt;
&lt;p&gt;[1]:
    ==================================================================
     BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0
     Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504&lt;/p&gt;
&lt;p&gt;Call trace:
      load_firmware_cb+0x1310/0x17a0
      request_firmware_work_func+0x128/0x220
      process_one_work+0x770/0x1824
      worker_thread+0x488/0xea0
      kthread+0x300/0x430
      ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;Allocated by task 6504:
      kzalloc
      tuner_probe+0xb0/0x1430…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;media: xc2028: avoid use-after-free in load_firmware_cb()&lt;/p&gt;
&lt;p&gt;syzkaller reported use-after-free in load_firmware_cb() [1].
The reason is because the module allocated a struct tuner in tuner_probe(),
and then the module initialization failed, the struct tuner was released.
A worker which created during module initialization accesses this struct
tuner later, it caused use-after-free.&lt;/p&gt;
&lt;p&gt;The process is as follows:&lt;/p&gt;
&lt;p&gt;task-6504           worker_thread
tuner_probe                             &amp;lt;= alloc dvb_frontend [2]
...
request_firmware_nowait                 &amp;lt;= create a worker
...
tuner_remove                            &amp;lt;= free dvb_frontend
...
                    request_firmware_work_func  &amp;lt;= the firmware is ready
                    load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed&lt;/p&gt;
&lt;p&gt;To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is
null, report a warning and just return.&lt;/p&gt;
&lt;p&gt;[1]:
    ==================================================================
     BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0
     Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504&lt;/p&gt;
&lt;p&gt;Call trace:
      load_firmware_cb+0x1310/0x17a0
      request_firmware_work_func+0x128/0x220
      process_one_work+0x770/0x1824
      worker_thread+0x488/0xea0
      kthread+0x300/0x430
      ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;Allocated by task 6504:
      kzalloc
      tuner_probe+0xb0/0x1430…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-43900</guid>
    </item>
    <item>
      <title>GHSA-8j3f-9fhh-xf4c</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8j3f-9fhh-xf4c</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;media: xc2028: avoid use-after-free in load_firmware_cb()&lt;/p&gt;
&lt;p&gt;syzkaller reported use-after-free in load_firmware_cb() [1].
The reason is because the module allocated a struct tuner in tuner_probe(),
and then the module initialization failed, the struct tuner was released.
A worker which created during module initialization accesses this struct
tuner later, it caused use-after-free.&lt;/p&gt;
&lt;p&gt;The process is as follows:&lt;/p&gt;
&lt;p&gt;task-6504           worker_thread
tuner_probe                             &amp;lt;= alloc dvb_frontend [2]
...
request_firmware_nowait                 &amp;lt;= create a worker
...
tuner_remove                            &amp;lt;= free dvb_frontend
...
                    request_firmware_work_func  &amp;lt;= the firmware is ready
                    load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed&lt;/p&gt;
&lt;p&gt;To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is
null, report a warning and just return.&lt;/p&gt;
&lt;p&gt;[1]:
    ==================================================================
     BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0
     Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504&lt;/p&gt;
&lt;p&gt;Call trace:
      load_firmware_cb+0x1310/0x17a0
      request_firmware_work_func+0x128/0x220
      process_one_work+0x770/0x1824
      worker_thread+0x488/0xea0
      kthread+0x300/0x430
      ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;Allocated by task 6504:
      kzalloc
      tuner_probe+0xb0/0x1430…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;media: xc2028: avoid use-after-free in load_firmware_cb()&lt;/p&gt;
&lt;p&gt;syzkaller reported use-after-free in load_firmware_cb() [1].
The reason is because the module allocated a struct tuner in tuner_probe(),
and then the module initialization failed, the struct tuner was released.
A worker which created during module initialization accesses this struct
tuner later, it caused use-after-free.&lt;/p&gt;
&lt;p&gt;The process is as follows:&lt;/p&gt;
&lt;p&gt;task-6504           worker_thread
tuner_probe                             &amp;lt;= alloc dvb_frontend [2]
...
request_firmware_nowait                 &amp;lt;= create a worker
...
tuner_remove                            &amp;lt;= free dvb_frontend
...
                    request_firmware_work_func  &amp;lt;= the firmware is ready
                    load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed&lt;/p&gt;
&lt;p&gt;To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is
null, report a warning and just return.&lt;/p&gt;
&lt;p&gt;[1]:
    ==================================================================
     BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0
     Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504&lt;/p&gt;
&lt;p&gt;Call trace:
      load_firmware_cb+0x1310/0x17a0
      request_firmware_work_func+0x128/0x220
      process_one_work+0x770/0x1824
      worker_thread+0x488/0xea0
      kthread+0x300/0x430
      ret_from_fork+0x10/0x20&lt;/p&gt;
&lt;p&gt;Allocated by task 6504:
      kzalloc
      tuner_probe+0xb0/0x1430…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8j3f-9fhh-xf4c</guid>
    </item>
    <item>
      <title>msrc_CVE-2024-43900 — media: xc2028: avoid use-after-free in load_firmware_cb()</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2024-43900</link>
      <description>msrc_CVE-2024-43900</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2024-43900</guid>
    </item>
    <item>
      <title>OESA-2024-2109 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-2109</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
f2fs: let&amp;amp;apos;s avoid panic if extent_tree is not created&#13;
&#13;
This patch avoids the below panic.&#13;
&#13;
pc : __lookup_extent_tree+0xd8/0x760
lr : f2fs_do_write_data_page+0x104/0x87c
sp : ffffffc010cbb3c0
x29: ffffffc010cbb3e0 x28: 0000000000000000
x27: ffffff8803e7f020 x26: ffffff8803e7ed40
x25: ffffff8803e7f020 x24: ffffffc010cbb460
x23: ffffffc010cbb480 x22: 0000000000000000
x21: 0000000000000000 x20: ffffffff22e90900
x19: 0000000000000000 x18: ffffffc010c5d080
x17: 0000000000000000 x16: 0000000000000020
x15: ffffffdb1acdbb88 x14: ffffff888759e2b0
x13: 0000000000000000 x12: ffffff802da49000
x11: 000000000a001200 x10: ffffff8803e7ed40
x9 : ffffff8023195800 x8 : ffffff802da49078
x7 : 0000000000000001 x6 : 0000000000000000
x5 : 0000000000000006 x4 : ffffffc010cbba28
x3 : 0000000000000000 x2 : ffffffc010cbb480
x1 : 0000000000000000 x0 : ffffff8803e7ed40
Call trace:
 __lookup_extent_tree+0xd8/0x760
 f2fs_do_write_data_page+0x104/0x87c
 f2fs_write_single_data_page+0x420/0xb60
 f2fs_write_cache_pages+0x418/0xb1c
 __f2fs_write_data_pages+0x428/0x58c
 f2fs_write_data_pages+0x30/0x40
 do_writepages+0x88/0x190
 __writeback_single_inode+0x48/0x448
 writeback_sb_inodes+0x468/0x9e8
 __writeback_inodes_wb+0xb8/0x2a4
 wb_writeback+0x33c/0x740
 wb_do_writeback+0x2b4/0x400
 wb_workfn+0xe4/0x34c
 process_one_work+0x24c/0x5bc
 worker_thread+0x3e8/0xa50…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&#13;
&#13;
In the Linux kernel, the following vulnerability has been resolved:&#13;
&#13;
f2fs: let&amp;amp;apos;s avoid panic if extent_tree is not created&#13;
&#13;
This patch avoids the below panic.&#13;
&#13;
pc : __lookup_extent_tree+0xd8/0x760
lr : f2fs_do_write_data_page+0x104/0x87c
sp : ffffffc010cbb3c0
x29: ffffffc010cbb3e0 x28: 0000000000000000
x27: ffffff8803e7f020 x26: ffffff8803e7ed40
x25: ffffff8803e7f020 x24: ffffffc010cbb460
x23: ffffffc010cbb480 x22: 0000000000000000
x21: 0000000000000000 x20: ffffffff22e90900
x19: 0000000000000000 x18: ffffffc010c5d080
x17: 0000000000000000 x16: 0000000000000020
x15: ffffffdb1acdbb88 x14: ffffff888759e2b0
x13: 0000000000000000 x12: ffffff802da49000
x11: 000000000a001200 x10: ffffff8803e7ed40
x9 : ffffff8023195800 x8 : ffffff802da49078
x7 : 0000000000000001 x6 : 0000000000000000
x5 : 0000000000000006 x4 : ffffffc010cbba28
x3 : 0000000000000000 x2 : ffffffc010cbb480
x1 : 0000000000000000 x0 : ffffff8803e7ed40
Call trace:
 __lookup_extent_tree+0xd8/0x760
 f2fs_do_write_data_page+0x104/0x87c
 f2fs_write_single_data_page+0x420/0xb60
 f2fs_write_cache_pages+0x418/0xb1c
 __f2fs_write_data_pages+0x428/0x58c
 f2fs_write_data_pages+0x30/0x40
 do_writepages+0x88/0x190
 __writeback_single_inode+0x48/0x448
 writeback_sb_inodes+0x468/0x9e8
 __writeback_inodes_wb+0xb8/0x2a4
 wb_writeback+0x33c/0x740
 wb_do_writeback+0x2b4/0x400
 wb_workfn+0xe4/0x34c
 process_one_work+0x24c/0x5bc
 worker_thread+0x3e8/0xa50…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-2109</guid>
    </item>
    <item>
      <title>SUSE-SU-2024:3189-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2024:3189-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2024:3189-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-43900</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-43900</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 186 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: media: xc2028: avoid use-after-free in load_firmware_cb() syzkaller reported use-after-free in load_firmware_cb() [1]. The reason is because the module allocated a struct tuner in tuner_probe(), and then the module initialization failed, the struct tuner was released. A worker which created during module initialization accesses this struct tuner later, it caused use-after-free. The process is as follows: task-6504           worker_thread tuner_probe                             &amp;lt;= alloc dvb_frontend [2] ... request_firmware_nowait                 &amp;lt;= create a worker ... tuner_remove                            &amp;lt;= free dvb_frontend ...                     request_firmware_work_func  &amp;lt;= the firmware is ready                     load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is null, report a warning and just return. [1]:     ==================================================================      BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0      Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504      Call trace:       load_firmware_cb+0x1310/0x17a0       request_firmware_work_func+0x128/0x220       process_one_work+0x770/0x1824       worker_thread+0x488/0xea0       kthread+0x300/0x430       ret_from_fork+0x10/0x20      Allocated by task 6504:       kzalloc       tuner_probe+0xb0/0x1430       i2c_devi…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 186 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: media: xc2028: avoid use-after-free in load_firmware_cb() syzkaller reported use-after-free in load_firmware_cb() [1]. The reason is because the module allocated a struct tuner in tuner_probe(), and then the module initialization failed, the struct tuner was released. A worker which created during module initialization accesses this struct tuner later, it caused use-after-free. The process is as follows: task-6504           worker_thread tuner_probe                             &amp;lt;= alloc dvb_frontend [2] ... request_firmware_nowait                 &amp;lt;= create a worker ... tuner_remove                            &amp;lt;= free dvb_frontend ...                     request_firmware_work_func  &amp;lt;= the firmware is ready                     load_firmware_cb    &amp;lt;= but now the dvb_frontend has been freed To fix the issue, check the dvd_frontend in load_firmware_cb(), if it is null, report a warning and just return. [1]:     ==================================================================      BUG: KASAN: use-after-free in load_firmware_cb+0x1310/0x17a0      Read of size 8 at addr ffff8000d7ca2308 by task kworker/2:3/6504      Call trace:       load_firmware_cb+0x1310/0x17a0       request_firmware_work_func+0x128/0x220       process_one_work+0x770/0x1824       worker_thread+0x488/0xea0       kthread+0x300/0x430       ret_from_fork+0x10/0x20      Allocated by task 6504:       kzalloc       tuner_probe+0xb0/0x1430       i2c_devi…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-43900</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1925 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1925</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und um weitere, nicht beschriebene Auswirkungen zu erzielen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und um weitere, nicht beschriebene Auswirkungen zu erzielen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1925</guid>
    </item>
  </channel>
</rss>
