<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 18:01:36 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:11428 — Important: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:11428</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: kernel-abi-stablelists, AlmaLinux:10: kernel-doc&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: media: uvcvideo: Remove dangling pointers (CVE-2024-58002)
  * kernel: media: uvcvideo: Fix double free in error path (CVE-2024-57980)
  * kernel: wifi: iwlwifi: limit printed string from FW file (CVE-2025-21905)
  * kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry (CVE-2025-37958)
  * kernel: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error (CVE-2025-38089)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: kernel-abi-stablelists, AlmaLinux:10: kernel-doc&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: media: uvcvideo: Remove dangling pointers (CVE-2024-58002)
  * kernel: media: uvcvideo: Fix double free in error path (CVE-2024-57980)
  * kernel: wifi: iwlwifi: limit printed string from FW file (CVE-2025-21905)
  * kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry (CVE-2025-37958)
  * kernel: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error (CVE-2025-38089)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:11428</guid>
    </item>
    <item>
      <title>bdu:2025-04806</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-04806</link>
      <description>bdu:2025-04806</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-04806</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-21905</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-21905</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-21905</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0333 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Elles permettent à un attaquant de provo…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333</link>
      <description>certfr-2025-avi-0333</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0333</guid>
    </item>
    <item>
      <title>EUVD-2026-314089</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-314089</link>
      <description>EUVD-2026-314089</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-314089</guid>
    </item>
    <item>
      <title>fkie_cve-2025-21905</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-21905</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: iwlwifi: limit printed string from FW file&lt;/p&gt;
&lt;p&gt;There&amp;#39;s no guarantee here that the file is always with a
NUL-termination, so reading the string may read beyond the
end of the TLV. If that&amp;#39;s the last TLV in the file, it can
perhaps even read beyond the end of the file buffer.&lt;/p&gt;
&lt;p&gt;Fix that by limiting the print format to the size of the
buffer we have.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: iwlwifi: limit printed string from FW file&lt;/p&gt;
&lt;p&gt;There&amp;#39;s no guarantee here that the file is always with a
NUL-termination, so reading the string may read beyond the
end of the TLV. If that&amp;#39;s the last TLV in the file, it can
perhaps even read beyond the end of the file buffer.&lt;/p&gt;
&lt;p&gt;Fix that by limiting the print format to the size of the
buffer we have.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-21905</guid>
    </item>
    <item>
      <title>GHSA-7fc4-8q5h-8mjj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7fc4-8q5h-8mjj</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: iwlwifi: limit printed string from FW file&lt;/p&gt;
&lt;p&gt;There&amp;#39;s no guarantee here that the file is always with a
NUL-termination, so reading the string may read beyond the
end of the TLV. If that&amp;#39;s the last TLV in the file, it can
perhaps even read beyond the end of the file buffer.&lt;/p&gt;
&lt;p&gt;Fix that by limiting the print format to the size of the
buffer we have.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;wifi: iwlwifi: limit printed string from FW file&lt;/p&gt;
&lt;p&gt;There&amp;#39;s no guarantee here that the file is always with a
NUL-termination, so reading the string may read beyond the
end of the TLV. If that&amp;#39;s the last TLV in the file, it can
perhaps even read beyond the end of the file buffer.&lt;/p&gt;
&lt;p&gt;Fix that by limiting the print format to the size of the
buffer we have.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7fc4-8q5h-8mjj</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-21905 — wifi: iwlwifi: limit printed string from FW file</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-21905</link>
      <description>msrc_CVE-2025-21905</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-21905</guid>
    </item>
    <item>
      <title>OESA-2025-2800 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2800</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ext4: update s_journal_inum if it changes after journal replay&lt;/p&gt;
&lt;p&gt;When mounting a crafted ext4 image, s_journal_inum may change after journal
replay, which is obviously unreasonable because we have successfully loaded
and replayed the journal through the old s_journal_inum. And the new
s_journal_inum bypasses some of the checks in ext4_get_journal(), which
may trigger a null pointer dereference problem. So if s_journal_inum
changes after the journal replay, we ignore the change, and rewrite the
current journal_inum to the superblock.(CVE-2023-53091)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;vxlan: Fix nexthop hash size&lt;/p&gt;
&lt;p&gt;The nexthop code expects a 31 bit hash, such as what is returned by
fib_multipath_hash() and rt6_multipath_hash(). Passing the 32 bit hash
returned by skb_get_hash() can lead to problems related to the fact that
&amp;amp;apos;int hash&amp;amp;apos; is a negative number when the MSB is set.&lt;/p&gt;
&lt;p&gt;In the case of hash threshold nexthop groups, nexthop_select_path_hthr()
will disproportionately select the first nexthop group entry. In the case
of resilient nexthop groups, nexthop_select_path_res() may do an out of
bounds access in nh_buckets[], for example:
    hash = -912054133
    num_nh_buckets = 2
    bucket_index = 65535&lt;/p&gt;
&lt;p&gt;which leads to the following panic:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ffffc9000…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ext4: update s_journal_inum if it changes after journal replay&lt;/p&gt;
&lt;p&gt;When mounting a crafted ext4 image, s_journal_inum may change after journal
replay, which is obviously unreasonable because we have successfully loaded
and replayed the journal through the old s_journal_inum. And the new
s_journal_inum bypasses some of the checks in ext4_get_journal(), which
may trigger a null pointer dereference problem. So if s_journal_inum
changes after the journal replay, we ignore the change, and rewrite the
current journal_inum to the superblock.(CVE-2023-53091)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;vxlan: Fix nexthop hash size&lt;/p&gt;
&lt;p&gt;The nexthop code expects a 31 bit hash, such as what is returned by
fib_multipath_hash() and rt6_multipath_hash(). Passing the 32 bit hash
returned by skb_get_hash() can lead to problems related to the fact that
&amp;amp;apos;int hash&amp;amp;apos; is a negative number when the MSB is set.&lt;/p&gt;
&lt;p&gt;In the case of hash threshold nexthop groups, nexthop_select_path_hthr()
will disproportionately select the first nexthop group entry. In the case
of resilient nexthop groups, nexthop_select_path_res() may do an out of
bounds access in nh_buckets[], for example:
    hash = -912054133
    num_nh_buckets = 2
    bucket_index = 65535&lt;/p&gt;
&lt;p&gt;which leads to the following panic:&lt;/p&gt;
&lt;p&gt;BUG: unable to handle page fault for address: ffffc9000…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2800</guid>
    </item>
    <item>
      <title>RHSA-2025:11428 — Red Hat Security Advisory: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:11428</link>
      <description>&lt;p&gt;kernel: media: uvcvideo: Fix double free in error path kernel: media: uvcvideo: Remove dangling pointers kernel: wifi: iwlwifi: limit printed string from FW file kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry kernel: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error kernel: Linux kernel (i2c Tegra): Information disclosure or denial of service via SMBUS block read with invalid length&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: media: uvcvideo: Fix double free in error path kernel: media: uvcvideo: Remove dangling pointers kernel: wifi: iwlwifi: limit printed string from FW file kernel: mm/huge_memory: fix dereferencing invalid pmd migration entry kernel: sunrpc: handle SVC_GARBAGE during svc auth processing as auth error kernel: Linux kernel (i2c Tegra): Information disclosure or denial of service via SMBUS block read with invalid length&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:11428</guid>
    </item>
    <item>
      <title>RHSA-2025:11850 — Red Hat Security Advisory: kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:11850</link>
      <description>&lt;p&gt;kernel: ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead kernel: wifi: iwlwifi: limit printed string from FW file kernel: sched/fair: Fix potential memory corruption in child_cfs_rq_on_list kernel: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: ftrace: Fix NULL pointer dereference in is_ftrace_trampoline when ftrace is dead kernel: wifi: iwlwifi: limit printed string from FW file kernel: sched/fair: Fix potential memory corruption in child_cfs_rq_on_list kernel: NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:11850</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:01614-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:01614-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:01614-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-21905</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21905</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:Pro:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:Pro:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3 and 174 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: limit printed string from FW file There&amp;#39;s no guarantee here that the file is always with a NUL-termination, so reading the string may read beyond the end of the TLV. If that&amp;#39;s the last TLV in the file, it can perhaps even read beyond the end of the file buffer. Fix that by limiting the print format to the size of the buffer we have.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:Pro:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:Pro:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3 and 174 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: limit printed string from FW file There&amp;#39;s no guarantee here that the file is always with a NUL-termination, so reading the string may read beyond the end of the TLV. If that&amp;#39;s the last TLV in the file, it can perhaps even read beyond the end of the file buffer. Fix that by limiting the print format to the size of the buffer we have.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-21905</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0683 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0683</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial-of-Service auszulösen und um nicht näher spezifizierte Auswirkungen zu erzielen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial-of-Service auszulösen und um nicht näher spezifizierte Auswirkungen zu erzielen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0683</guid>
    </item>
  </channel>
</rss>
