<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 19:59:03 +0000</lastBuildDate>
    <item>
      <title>certfr-2025-avi-0472 — De multiples vulnérabilités ont été découvertes dans les produits Google. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0472</link>
      <description>certfr-2025-avi-0472</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0472</guid>
    </item>
    <item>
      <title>cnvd-2025-29704</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-29704</link>
      <description>cnvd-2025-29704</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-29704</guid>
    </item>
    <item>
      <title>EUVD-2026-272386</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-272386</link>
      <description>EUVD-2026-272386</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-272386</guid>
    </item>
    <item>
      <title>fkie_cve-2025-32312</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-32312</link>
      <description>&lt;p&gt;In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle hardening, allowing modified data to be passed to the next process due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle hardening, allowing modified data to be passed to the next process due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-32312</guid>
    </item>
    <item>
      <title>GHSA-2cvj-3458-7wc9</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2cvj-3458-7wc9</link>
      <description>&lt;p&gt;In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle hardening, allowing modified data to be passed to the next process due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In createIntentsList of PackageParser.java , there is a possible way to bypass lazy bundle hardening, allowing modified data to be passed to the next process due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2cvj-3458-7wc9</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1225 — Android Patchday Juni 2025: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1225</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Rechte zu erweitern, beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial-of-Service auszulösen und weitere nicht spezifizierte Auswirkungen zu erzielen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Google Android ausnutzen, um seine Rechte zu erweitern, beliebigen Programmcode auszuführen, Informationen offenzulegen, einen Denial-of-Service auszulösen und weitere nicht spezifizierte Auswirkungen zu erzielen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1225</guid>
    </item>
  </channel>
</rss>
