<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 10:14:05 +0000</lastBuildDate>
    <item>
      <title>bdu:2024-09024</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-09024</link>
      <description>bdu:2024-09024</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-09024</guid>
    </item>
    <item>
      <title>certfr-2024-avi-0482 — De multiples vulnérabilités ont été découvertes dans Mozilla Firefox. Certaines d'entre elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0482</link>
      <description>certfr-2024-avi-0482</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-0482</guid>
    </item>
    <item>
      <title>cnvd-2024-36727</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-36727</link>
      <description>cnvd-2024-36727</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-36727</guid>
    </item>
    <item>
      <title>EUVD-2026-198641</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-198641</link>
      <description>EUVD-2026-198641</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-198641</guid>
    </item>
    <item>
      <title>fkie_cve-2024-5695</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-5695</link>
      <description>&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-5695</guid>
    </item>
    <item>
      <title>GHSA-gfgx-4754-9hhp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gfgx-4754-9hhp</link>
      <description>&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gfgx-4754-9hhp</guid>
    </item>
    <item>
      <title>OESA-2025-1322 — firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-1322</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. %if 0 %global moz_debug_prefix /lib/debug %global moz_debug_dir /lib/debug/ %global uname_m %(uname -m) %global symbols_file_name -.en-US.-%(uname.crashreporter-symbols.zip %global symbols_file_path /lib/debug//-.en-US.-%(uname.crashreporter-symbols.zip %global _find_debuginfo_opts -p /lib/debug//-.en-US.-%(uname.crashreporter-symbols.zip -o debugcrashreporter.list %global crashreporter_pkg_name mozilla-crashreporter--debuginfo&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Multiple NSS NIST curves were susceptible to a side-channel attack known as &amp;amp;quot;Minerva&amp;amp;quot;. This attack could potentially allow an attacker to recover the private key. This vulnerability affects Firefox &amp;amp;lt; 121.(CVE-2023-6135)&lt;/p&gt;
&lt;p&gt;Ownership mismanagement led to a use-after-free in ReadableByteStreams This vulnerability affects Firefox &amp;amp;lt; 120, Firefox ESR &amp;amp;lt; 115.5.0, and Thunderbird &amp;amp;lt; 115.5.(CVE-2023-6207)&lt;/p&gt;
&lt;p&gt;When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a temporary storage not unlike the clipboard.
*This bug only affects Firefox on X11. Other systems are unaffected.* This vulnerability affects Firefox &amp;amp;lt; 120, Firefox ESR &amp;amp;lt; 115.5.0, and Thunderbird &amp;amp;lt; 115.5.(CVE-2023-6208)&lt;/p&gt;
&lt;p&gt;Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal &amp;amp;quot;/../&amp;amp;quot; part in the path could be used to override the specified host…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance and portability. %if 0 %global moz_debug_prefix /lib/debug %global moz_debug_dir /lib/debug/ %global uname_m %(uname -m) %global symbols_file_name -.en-US.-%(uname.crashreporter-symbols.zip %global symbols_file_path /lib/debug//-.en-US.-%(uname.crashreporter-symbols.zip %global _find_debuginfo_opts -p /lib/debug//-.en-US.-%(uname.crashreporter-symbols.zip -o debugcrashreporter.list %global crashreporter_pkg_name mozilla-crashreporter--debuginfo&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Multiple NSS NIST curves were susceptible to a side-channel attack known as &amp;amp;quot;Minerva&amp;amp;quot;. This attack could potentially allow an attacker to recover the private key. This vulnerability affects Firefox &amp;amp;lt; 121.(CVE-2023-6135)&lt;/p&gt;
&lt;p&gt;Ownership mismanagement led to a use-after-free in ReadableByteStreams This vulnerability affects Firefox &amp;amp;lt; 120, Firefox ESR &amp;amp;lt; 115.5.0, and Thunderbird &amp;amp;lt; 115.5.(CVE-2023-6207)&lt;/p&gt;
&lt;p&gt;When using X11, text selected by the page using the Selection API was erroneously copied into the primary selection, a temporary storage not unlike the clipboard.
*This bug only affects Firefox on X11. Other systems are unaffected.* This vulnerability affects Firefox &amp;amp;lt; 120, Firefox ESR &amp;amp;lt; 115.5.0, and Thunderbird &amp;amp;lt; 115.5.(CVE-2023-6208)&lt;/p&gt;
&lt;p&gt;Relative URLs starting with three slashes were incorrectly parsed, and a path-traversal &amp;amp;quot;/../&amp;amp;quot; part in the path could be used to override the specified host…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-1322</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:14044-1 — MozillaFirefox-127.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14044-1</link>
      <description>&lt;p&gt;MozillaFirefox-127.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;MozillaFirefox-127.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:14044-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-5695</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-5695</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: mozjs102, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91, Ubuntu:24.04:LTS: mozjs102&lt;/p&gt;
&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: mozjs102, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91, Ubuntu:24.04:LTS: mozjs102&lt;/p&gt;
&lt;p&gt;If an out-of-memory condition occurs at a specific point using allocations in the probabilistic heap checker, an assertion could have been triggered, and in rarer situations, memory corruption could have occurred. This vulnerability affects Firefox &amp;lt; 127.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-5695</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-1346 — Mozilla Firefox: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1346</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox und Mozilla Firefox ESR ausnutzen, um beliebigen Code auszuführen, um einen Denial of Service Zustand herbeizuführen und um Sicherheitsmechanismen zu umgehen, sowie den Benutzer zu täuschen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox und Mozilla Firefox ESR ausnutzen, um beliebigen Code auszuführen, um einen Denial of Service Zustand herbeizuführen und um Sicherheitsmechanismen zu umgehen, sowie den Benutzer zu täuschen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-1346</guid>
    </item>
  </channel>
</rss>
