<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 12:49:51 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-11364</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-11364</link>
      <description>bdu:2025-11364</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-11364</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-38150</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-38150</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-38150</guid>
    </item>
    <item>
      <title>EUVD-2026-346939</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-346939</link>
      <description>EUVD-2026-346939</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-346939</guid>
    </item>
    <item>
      <title>fkie_cve-2025-38150</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-38150</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section&lt;/p&gt;
&lt;p&gt;Syzkaller reports the following issue:&lt;/p&gt;
&lt;p&gt;BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578
 __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746
 team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781
 dev_change_rx_flags net/core/dev.c:9145 [inline]
 __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189
 netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201
 dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]
 packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]
 packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247
 notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85
 call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]
 call_netdevice_notifiers net/core/dev.c:2228 [inline]
 unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972
 rtnl_delete_link net/core/rtnetlink.c:3522 [inline]
 rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564
 rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955
 netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534&lt;/p&gt;
&lt;p&gt;Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger
the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous
and/or allmulti mode. Both of these operations require acquiring
the netdev instance lock.&lt;/p&gt;
&lt;p&gt;Move the call to `packet_dev_mc` outs…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section&lt;/p&gt;
&lt;p&gt;Syzkaller reports the following issue:&lt;/p&gt;
&lt;p&gt;BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578
 __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746
 team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781
 dev_change_rx_flags net/core/dev.c:9145 [inline]
 __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189
 netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201
 dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]
 packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]
 packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247
 notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85
 call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]
 call_netdevice_notifiers net/core/dev.c:2228 [inline]
 unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972
 rtnl_delete_link net/core/rtnetlink.c:3522 [inline]
 rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564
 rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955
 netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534&lt;/p&gt;
&lt;p&gt;Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger
the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous
and/or allmulti mode. Both of these operations require acquiring
the netdev instance lock.&lt;/p&gt;
&lt;p&gt;Move the call to `packet_dev_mc` outs…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-38150</guid>
    </item>
    <item>
      <title>GHSA-2x7p-gc2x-3v72</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2x7p-gc2x-3v72</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section&lt;/p&gt;
&lt;p&gt;Syzkaller reports the following issue:&lt;/p&gt;
&lt;p&gt;BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578
 __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746
 team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781
 dev_change_rx_flags net/core/dev.c:9145 [inline]
 __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189
 netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201
 dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]
 packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]
 packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247
 notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85
 call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]
 call_netdevice_notifiers net/core/dev.c:2228 [inline]
 unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972
 rtnl_delete_link net/core/rtnetlink.c:3522 [inline]
 rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564
 rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955
 netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534&lt;/p&gt;
&lt;p&gt;Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger
the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous
and/or allmulti mode. Both of these operations require acquiring
the netdev instance lock.&lt;/p&gt;
&lt;p&gt;Move the call to `packet_dev_mc` outs…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section&lt;/p&gt;
&lt;p&gt;Syzkaller reports the following issue:&lt;/p&gt;
&lt;p&gt;BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578
 __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746
 team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781
 dev_change_rx_flags net/core/dev.c:9145 [inline]
 __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189
 netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201
 dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]
 packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]
 packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247
 notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85
 call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]
 call_netdevice_notifiers net/core/dev.c:2228 [inline]
 unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972
 rtnl_delete_link net/core/rtnetlink.c:3522 [inline]
 rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564
 rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955
 netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534&lt;/p&gt;
&lt;p&gt;Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger
the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous
and/or allmulti mode. Both of these operations require acquiring
the netdev instance lock.&lt;/p&gt;
&lt;p&gt;Move the call to `packet_dev_mc` outs…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2x7p-gc2x-3v72</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-38150</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38150</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 75 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section Syzkaller reports the following issue:  BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578  __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746  team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781  dev_change_rx_flags net/core/dev.c:9145 [inline]  __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189  netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201  dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]  packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]  packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247  notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85  call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]  call_netdevice_notifiers net/core/dev.c:2228 [inline]  unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972  rtnl_delete_link net/core/rtnetlink.c:3522 [inline]  rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564  rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955  netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534 Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous and/or allmulti mode. Both of these operations require acquiring the netdev instance lock. Move the call to `packet_dev_mc` outside o…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 75 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: af_packet: move notifier&amp;#39;s packet_dev_mc out of rcu critical section Syzkaller reports the following issue:  BUG: sleeping function called from invalid context at kernel/locking/mutex.c:578  __mutex_lock+0x106/0xe80 kernel/locking/mutex.c:746  team_change_rx_flags+0x38/0x220 drivers/net/team/team_core.c:1781  dev_change_rx_flags net/core/dev.c:9145 [inline]  __dev_set_promiscuity+0x3f8/0x590 net/core/dev.c:9189  netif_set_promiscuity+0x50/0xe0 net/core/dev.c:9201  dev_set_promiscuity+0x126/0x260 net/core/dev_api.c:286 packet_dev_mc net/packet/af_packet.c:3698 [inline]  packet_dev_mclist_delete net/packet/af_packet.c:3722 [inline]  packet_notifier+0x292/0xa60 net/packet/af_packet.c:4247  notifier_call_chain+0x1b3/0x3e0 kernel/notifier.c:85  call_netdevice_notifiers_extack net/core/dev.c:2214 [inline]  call_netdevice_notifiers net/core/dev.c:2228 [inline]  unregister_netdevice_many_notify+0x15d8/0x2330 net/core/dev.c:11972  rtnl_delete_link net/core/rtnetlink.c:3522 [inline]  rtnl_dellink+0x488/0x710 net/core/rtnetlink.c:3564  rtnetlink_rcv_msg+0x7cf/0xb70 net/core/rtnetlink.c:6955  netlink_rcv_skb+0x219/0x490 net/netlink/af_netlink.c:2534 Calling `PACKET_ADD_MEMBERSHIP` on an ops-locked device can trigger the `NETDEV_UNREGISTER` notifier, which may require disabling promiscuous and/or allmulti mode. Both of these operations require acquiring the netdev instance lock. Move the call to `packet_dev_mc` outside o…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38150</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1452 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1452</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und andere, nicht spezifizierte Auswirkungen zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um einen Denial of Service Angriff durchzuführen und andere, nicht spezifizierte Auswirkungen zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1452</guid>
    </item>
  </channel>
</rss>
