<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 01:56:48 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-09124</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-09124</link>
      <description>bdu:2025-09124</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-09124</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-38416</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-38416</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-38416</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0698 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Certaines d'entre elles permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0698</link>
      <description>certfr-2025-avi-0698</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0698</guid>
    </item>
    <item>
      <title>EUVD-2026-347034</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-347034</link>
      <description>EUVD-2026-347034</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-347034</guid>
    </item>
    <item>
      <title>fkie_cve-2025-38416</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-38416</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path&lt;/p&gt;
&lt;p&gt;Setting tty-&amp;gt;disc_data before opening the NCI device means we need to
clean it up on error paths.  This also opens some short window if device
starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded
(broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on
the success path, when opening of the NCI device and try_module_get()
succeeds.&lt;/p&gt;
&lt;p&gt;The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be
ever assigned thus NULL-ified.  This however should not be relevant
difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path&lt;/p&gt;
&lt;p&gt;Setting tty-&amp;gt;disc_data before opening the NCI device means we need to
clean it up on error paths.  This also opens some short window if device
starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded
(broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on
the success path, when opening of the NCI device and try_module_get()
succeeds.&lt;/p&gt;
&lt;p&gt;The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be
ever assigned thus NULL-ified.  This however should not be relevant
difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-38416</guid>
    </item>
    <item>
      <title>GHSA-9qw8-xx45-2wp7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-9qw8-xx45-2wp7</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path&lt;/p&gt;
&lt;p&gt;Setting tty-&amp;gt;disc_data before opening the NCI device means we need to
clean it up on error paths.  This also opens some short window if device
starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded
(broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on
the success path, when opening of the NCI device and try_module_get()
succeeds.&lt;/p&gt;
&lt;p&gt;The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be
ever assigned thus NULL-ified.  This however should not be relevant
difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path&lt;/p&gt;
&lt;p&gt;Setting tty-&amp;gt;disc_data before opening the NCI device means we need to
clean it up on error paths.  This also opens some short window if device
starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded
(broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on
the success path, when opening of the NCI device and try_module_get()
succeeds.&lt;/p&gt;
&lt;p&gt;The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be
ever assigned thus NULL-ified.  This however should not be relevant
difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-9qw8-xx45-2wp7</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-38416 — NFC: nci: uart: Set tty-&gt;disc_data only in success path</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-38416</link>
      <description>msrc_CVE-2025-38416</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-38416</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:20081-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:20081-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:20081-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:02853-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:02853-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:02853-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-38416</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38416</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge and 212 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path Setting tty-&amp;gt;disc_data before opening the NCI device means we need to clean it up on error paths.  This also opens some short window if device starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded (broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on the success path, when opening of the NCI device and try_module_get() succeeds. The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be ever assigned thus NULL-ified.  This however should not be relevant difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge and 212 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: NFC: nci: uart: Set tty-&amp;gt;disc_data only in success path Setting tty-&amp;gt;disc_data before opening the NCI device means we need to clean it up on error paths.  This also opens some short window if device starts sending data, even before NCIUARTSETDRIVER IOCTL succeeded (broken hardware?).  Close the window by exposing tty-&amp;gt;disc_data only on the success path, when opening of the NCI device and try_module_get() succeeds. The code differs in error path in one aspect: tty-&amp;gt;disc_data won&amp;#39;t be ever assigned thus NULL-ified.  This however should not be relevant difference, because of &amp;#34;tty-&amp;gt;disc_data=NULL&amp;#34; in nci_uart_tty_open().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-38416</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1653 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1653</link>
      <description>&lt;p&gt;Ein entfernter anonymer Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder andere nicht spezifizierte Angriffe durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter anonymer Angreifer kann mehrere Schwachstellen im Linux-Kernel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder andere nicht spezifizierte Angriffe durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1653</guid>
    </item>
  </channel>
</rss>
