<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:06:34 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:28235 — Low: libtasn1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:28235</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: libtasn1, AlmaLinux:10: libtasn1-devel, AlmaLinux:10: libtasn1-tools&lt;/p&gt;
&lt;p&gt;A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string (CVE-2025-13151)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: libtasn1, AlmaLinux:10: libtasn1-devel, AlmaLinux:10: libtasn1-tools&lt;/p&gt;
&lt;p&gt;A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string (CVE-2025-13151)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:28235</guid>
    </item>
    <item>
      <title>bdu:2026-05140</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-05140</link>
      <description>bdu:2026-05140</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-05140</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-13151</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-13151</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: libtasn1, Alpaquita:stream: libtasn1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: libtasn1, Alpaquita:stream: libtasn1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-13151</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0199 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Certaines d'entre elles permettent à un attaq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0199</link>
      <description>certfr-2026-avi-0199</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0199</guid>
    </item>
    <item>
      <title>Withdrawn: CLEANSTART-2026-AF52025 — In libexpat before 2</title>
      <link>https://cve.radiocsirt.org/vuln/cleanstart-2026-af52025</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: apache-zookeeper&lt;/p&gt;
&lt;p&gt;Multiple security vulnerabilities affect the apache-zookeeper package. In libexpat before 2. See references for individual vulnerability details.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;
&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; CleanStart: apache-zookeeper&lt;/p&gt;
&lt;p&gt;Multiple security vulnerabilities affect the apache-zookeeper package. In libexpat before 2. See references for individual vulnerability details.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cleanstart-2026-af52025</guid>
    </item>
    <item>
      <title>EUVD-2026-266083</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-266083</link>
      <description>EUVD-2026-266083</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-266083</guid>
    </item>
    <item>
      <title>fkie_cve-2025-13151</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-13151</link>
      <description>&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-13151</guid>
    </item>
    <item>
      <title>GHSA-f433-vfwr-65r3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-f433-vfwr-65r3</link>
      <description>&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-f433-vfwr-65r3</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-13151 — CVE-2025-13151</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-13151</link>
      <description>msrc_CVE-2025-13151</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-13151</guid>
    </item>
    <item>
      <title>NCSC-2026-0309 — Kwetsbaarheden verholpen in Oracle Communications</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0309</link>
      <description>NCSC-2026-0309</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0309</guid>
    </item>
    <item>
      <title>OESA-2026-1178 — libtasn1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-1178</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: libtasn1&lt;/p&gt;
&lt;p&gt;Libtasn1 is the ASN.1 library used by GnuTLS, p11-kit and some other packages. The goal of this implementation is to be highly portable, and only require an ANSI C99 platform.This library provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.(CVE-2025-13151)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS: libtasn1&lt;/p&gt;
&lt;p&gt;Libtasn1 is the ASN.1 library used by GnuTLS, p11-kit and some other packages. The goal of this implementation is to be highly portable, and only require an ANSI C99 platform.This library provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.(CVE-2025-13151)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-1178</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:10033-1 — libtasn1-6-32bit-4.21.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:10033-1</link>
      <description>&lt;p&gt;libtasn1-6-32bit-4.21.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libtasn1-6-32bit-4.21.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:10033-1</guid>
    </item>
    <item>
      <title>RHSA-2026:33313 — Red Hat Security Advisory: A Subscription Management tool for finding and reporting Red Hat product usage</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:33313</link>
      <description>&lt;p&gt;libxml2: buffer over-read in xmlHTMLPrintFileContext in xmllint.c coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification libxslt: use-after-free with key data stored cross-RVT libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string image-size: image-size: Denial of Service due to infinite loop when processing specially crafted images. python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite nginx: ngx_http_rewrite_module: code execution and denial of service openssl: openssl: Information Disclosure from Uninitialized Memory via Invalid RSA Public Key libpng: libpng: Arbitrary code execution due to use-after-free vulnerability libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion vim: Command injection allows arbitrary code execution via malicious tag files urllib3: urllib3: Information disclosure via cross-origin redirects forwarding sensitive headers urllib3: urllib3: Denial of Service due to excessive HTTP response decompression&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libxml2: buffer over-read in xmlHTMLPrintFileContext in xmllint.c coreutils: Heap Buffer Under-Read in GNU Coreutils sort via Key Specification libxslt: use-after-free with key data stored cross-RVT libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string image-size: image-size: Denial of Service due to infinite loop when processing specially crafted images. python-pip: Path traversal via malicious entry point name in pip wheel installation allows arbitrary file overwrite nginx: ngx_http_rewrite_module: code execution and denial of service openssl: openssl: Information Disclosure from Uninitialized Memory via Invalid RSA Public Key libpng: libpng: Arbitrary code execution due to use-after-free vulnerability libpng: libpng: Information disclosure and denial of service via out-of-bounds read/write in Neon palette expansion vim: Command injection allows arbitrary code execution via malicious tag files urllib3: urllib3: Information disclosure via cross-origin redirects forwarding sensitive headers urllib3: urllib3: Denial of Service due to excessive HTTP response decompression&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:33313</guid>
    </item>
    <item>
      <title>RLSA-2026:28235 — Low: libtasn1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:28235</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: libtasn1&lt;/p&gt;
&lt;p&gt;A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string (CVE-2025-13151)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: libtasn1&lt;/p&gt;
&lt;p&gt;A library that provides Abstract Syntax Notation One (ASN.1, as specified by the X.680 ITU-T recommendation) parsing and structures management, and Distinguished Encoding Rules (DER, as per X.690) encoding and decoding functions.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libtasn1: libtasn1: Denial of Service via stack-based buffer overflow in asn1_expend_octet_string (CVE-2025-13151)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:28235</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:0118-1 — Security update for libtasn1</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:0118-1</link>
      <description>&lt;p&gt;Security update for libtasn1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libtasn1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:0118-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-13151</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-13151</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libtasn1-6, Ubuntu:Pro:16.04:LTS: libtasn1-6, Ubuntu:Pro:18.04:LTS: libtasn1-6, Ubuntu:Pro:20.04:LTS: libtasn1-6, Ubuntu:22.04:LTS: libtasn1-6, Ubuntu:24.04:LTS: libtasn1-6, Ubuntu:25.10: libtasn1-6&lt;/p&gt;
&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libtasn1-6, Ubuntu:Pro:16.04:LTS: libtasn1-6, Ubuntu:Pro:18.04:LTS: libtasn1-6, Ubuntu:Pro:20.04:LTS: libtasn1-6, Ubuntu:22.04:LTS: libtasn1-6, Ubuntu:24.04:LTS: libtasn1-6, Ubuntu:25.10: libtasn1-6&lt;/p&gt;
&lt;p&gt;Stack-based buffer overflow in libtasn1 version: v4.20.0. The function fails to validate the size of input data resulting in a buffer overflow in asn1_expend_octet_string.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-13151</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0044 — libtasn1: Schwachstelle ermöglicht Denial of Service</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0044</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in libtasn1 ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in libtasn1 ausnutzen, um einen Denial of Service Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0044</guid>
    </item>
  </channel>
</rss>
