<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:51:21 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-02472</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-02472</link>
      <description>bdu:2025-02472</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-02472</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-58060</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-58060</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-58060</guid>
    </item>
    <item>
      <title>EUVD-2026-346593</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-346593</link>
      <description>EUVD-2026-346593</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-346593</guid>
    </item>
    <item>
      <title>fkie_cve-2024-58060</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-58060</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing&lt;/p&gt;
&lt;p&gt;There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n.
In particular, the report is on tcp_congestion_ops that has
a &amp;#34;struct module *owner&amp;#34; member.&lt;/p&gt;
&lt;p&gt;For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member,
it can be extended either by the regular kernel module or
by the bpf_struct_ops. bpf_try_module_get() will be used
to do the refcounting and different refcount is done
based on the owner pointer. When CONFIG_MODULES=n,
the btf_id of the &amp;#34;struct module&amp;#34; is missing:&lt;/p&gt;
&lt;p&gt;WARN: resolve_btfids: unresolved symbol module&lt;/p&gt;
&lt;p&gt;Thus, the bpf_try_module_get() cannot do the correct refcounting.&lt;/p&gt;
&lt;p&gt;Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member.
e.g. the recent sched_ext_ops.&lt;/p&gt;
&lt;p&gt;This patch is to disable bpf_struct_ops registration if
the struct_ops has the &amp;#34;struct module *&amp;#34; member and the
&amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper
is moved to the btf.h header file for this test.&lt;/p&gt;
&lt;p&gt;This has happened since the beginning of bpf_struct_ops which has gone
through many changes. The Fixes tag is set to a recent commit that this
patch can apply cleanly. Considering CONFIG_MODULES=n is not
common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing&lt;/p&gt;
&lt;p&gt;There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n.
In particular, the report is on tcp_congestion_ops that has
a &amp;#34;struct module *owner&amp;#34; member.&lt;/p&gt;
&lt;p&gt;For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member,
it can be extended either by the regular kernel module or
by the bpf_struct_ops. bpf_try_module_get() will be used
to do the refcounting and different refcount is done
based on the owner pointer. When CONFIG_MODULES=n,
the btf_id of the &amp;#34;struct module&amp;#34; is missing:&lt;/p&gt;
&lt;p&gt;WARN: resolve_btfids: unresolved symbol module&lt;/p&gt;
&lt;p&gt;Thus, the bpf_try_module_get() cannot do the correct refcounting.&lt;/p&gt;
&lt;p&gt;Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member.
e.g. the recent sched_ext_ops.&lt;/p&gt;
&lt;p&gt;This patch is to disable bpf_struct_ops registration if
the struct_ops has the &amp;#34;struct module *&amp;#34; member and the
&amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper
is moved to the btf.h header file for this test.&lt;/p&gt;
&lt;p&gt;This has happened since the beginning of bpf_struct_ops which has gone
through many changes. The Fixes tag is set to a recent commit that this
patch can apply cleanly. Considering CONFIG_MODULES=n is not
common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-58060</guid>
    </item>
    <item>
      <title>GHSA-4hqc-3j39-58mh</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4hqc-3j39-58mh</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing&lt;/p&gt;
&lt;p&gt;There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n.
In particular, the report is on tcp_congestion_ops that has
a &amp;#34;struct module *owner&amp;#34; member.&lt;/p&gt;
&lt;p&gt;For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member,
it can be extended either by the regular kernel module or
by the bpf_struct_ops. bpf_try_module_get() will be used
to do the refcounting and different refcount is done
based on the owner pointer. When CONFIG_MODULES=n,
the btf_id of the &amp;#34;struct module&amp;#34; is missing:&lt;/p&gt;
&lt;p&gt;WARN: resolve_btfids: unresolved symbol module&lt;/p&gt;
&lt;p&gt;Thus, the bpf_try_module_get() cannot do the correct refcounting.&lt;/p&gt;
&lt;p&gt;Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member.
e.g. the recent sched_ext_ops.&lt;/p&gt;
&lt;p&gt;This patch is to disable bpf_struct_ops registration if
the struct_ops has the &amp;#34;struct module *&amp;#34; member and the
&amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper
is moved to the btf.h header file for this test.&lt;/p&gt;
&lt;p&gt;This has happened since the beginning of bpf_struct_ops which has gone
through many changes. The Fixes tag is set to a recent commit that this
patch can apply cleanly. Considering CONFIG_MODULES=n is not
common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing&lt;/p&gt;
&lt;p&gt;There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n.
In particular, the report is on tcp_congestion_ops that has
a &amp;#34;struct module *owner&amp;#34; member.&lt;/p&gt;
&lt;p&gt;For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member,
it can be extended either by the regular kernel module or
by the bpf_struct_ops. bpf_try_module_get() will be used
to do the refcounting and different refcount is done
based on the owner pointer. When CONFIG_MODULES=n,
the btf_id of the &amp;#34;struct module&amp;#34; is missing:&lt;/p&gt;
&lt;p&gt;WARN: resolve_btfids: unresolved symbol module&lt;/p&gt;
&lt;p&gt;Thus, the bpf_try_module_get() cannot do the correct refcounting.&lt;/p&gt;
&lt;p&gt;Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member.
e.g. the recent sched_ext_ops.&lt;/p&gt;
&lt;p&gt;This patch is to disable bpf_struct_ops registration if
the struct_ops has the &amp;#34;struct module *&amp;#34; member and the
&amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper
is moved to the btf.h header file for this test.&lt;/p&gt;
&lt;p&gt;This has happened since the beginning of bpf_struct_ops which has gone
through many changes. The Fixes tag is set to a recent commit that this
patch can apply cleanly. Considering CONFIG_MODULES=n is not
common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4hqc-3j39-58mh</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-58060</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-58060</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 75 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n. In particular, the report is on tcp_congestion_ops that has a &amp;#34;struct module *owner&amp;#34; member. For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member, it can be extended either by the regular kernel module or by the bpf_struct_ops. bpf_try_module_get() will be used to do the refcounting and different refcount is done based on the owner pointer. When CONFIG_MODULES=n, the btf_id of the &amp;#34;struct module&amp;#34; is missing: WARN: resolve_btfids: unresolved symbol module Thus, the bpf_try_module_get() cannot do the correct refcounting. Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member. e.g. the recent sched_ext_ops. This patch is to disable bpf_struct_ops registration if the struct_ops has the &amp;#34;struct module *&amp;#34; member and the &amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper is moved to the btf.h header file for this test. This has happened since the beginning of bpf_struct_ops which has gone through many changes. The Fixes tag is set to a recent commit that this patch can apply cleanly. Considering CONFIG_MODULES=n is not common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 75 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses module ptr and the module btf_id is missing There is a UAF report in the bpf_struct_ops when CONFIG_MODULES=n. In particular, the report is on tcp_congestion_ops that has a &amp;#34;struct module *owner&amp;#34; member. For struct_ops that has a &amp;#34;struct module *owner&amp;#34; member, it can be extended either by the regular kernel module or by the bpf_struct_ops. bpf_try_module_get() will be used to do the refcounting and different refcount is done based on the owner pointer. When CONFIG_MODULES=n, the btf_id of the &amp;#34;struct module&amp;#34; is missing: WARN: resolve_btfids: unresolved symbol module Thus, the bpf_try_module_get() cannot do the correct refcounting. Not all subsystem&amp;#39;s struct_ops requires the &amp;#34;struct module *owner&amp;#34; member. e.g. the recent sched_ext_ops. This patch is to disable bpf_struct_ops registration if the struct_ops has the &amp;#34;struct module *&amp;#34; member and the &amp;#34;struct module&amp;#34; btf_id is missing. The btf_type_is_fwd() helper is moved to the btf.h header file for this test. This has happened since the beginning of bpf_struct_ops which has gone through many changes. The Fixes tag is set to a recent commit that this patch can apply cleanly. Considering CONFIG_MODULES=n is not common and the age of the issue, targeting for bpf-next also.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-58060</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0499 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0499</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um nicht spezifizierte Auswirkungen zu erzeugen oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um nicht spezifizierte Auswirkungen zu erzeugen oder einen Denial-of-Service-Zustand zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0499</guid>
    </item>
  </channel>
</rss>
