<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 18:39:50 +0000</lastBuildDate>
    <item>
      <title>bdu:2025-12598</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-12598</link>
      <description>bdu:2025-12598</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-12598</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0771 — De multiples vulnérabilités ont été découvertes dans Xen. Certaines d'entre elles permettent à un attaquant de provoque…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0771</link>
      <description>certfr-2025-avi-0771</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0771</guid>
    </item>
    <item>
      <title>cnvd-2025-21354</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-21354</link>
      <description>cnvd-2025-21354</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-21354</guid>
    </item>
    <item>
      <title>EUVD-2026-260046</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-260046</link>
      <description>EUVD-2026-260046</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-260046</guid>
    </item>
    <item>
      <title>fkie_cve-2025-58145</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-58145</link>
      <description>&lt;p&gt;[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]&lt;/p&gt;
&lt;p&gt;There are two issues related to the mapping of pages belonging to other
domains: For one, an assertion is wrong there, where the case actually
needs handling.  A NULL pointer de-reference could result on a release
build.  This is CVE-2025-58144.&lt;/p&gt;
&lt;p&gt;And then the P2M lock isn&amp;#39;t held until a page reference was actually
obtained (or the attempt to do so has failed).  Otherwise the page can
not only change type, but even ownership in between, thus allowing
domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]&lt;/p&gt;
&lt;p&gt;There are two issues related to the mapping of pages belonging to other
domains: For one, an assertion is wrong there, where the case actually
needs handling.  A NULL pointer de-reference could result on a release
build.  This is CVE-2025-58144.&lt;/p&gt;
&lt;p&gt;And then the P2M lock isn&amp;#39;t held until a page reference was actually
obtained (or the attempt to do so has failed).  Otherwise the page can
not only change type, but even ownership in between, thus allowing
domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-58145</guid>
    </item>
    <item>
      <title>GHSA-j9v5-p5pj-rmp7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-j9v5-p5pj-rmp7</link>
      <description>&lt;p&gt;[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]&lt;/p&gt;
&lt;p&gt;There are two issues related to the mapping of pages belonging to other
domains: For one, an assertion is wrong there, where the case actually
needs handling.  A NULL pointer de-reference could result on a release
build.  This is CVE-2025-58144.&lt;/p&gt;
&lt;p&gt;And then the P2M lock isn&amp;#39;t held until a page reference was actually
obtained (or the attempt to do so has failed).  Otherwise the page can
not only change type, but even ownership in between, thus allowing
domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;[This CNA information record relates to multiple CVEs; the
text explains which aspects/vulnerabilities correspond to which CVE.]&lt;/p&gt;
&lt;p&gt;There are two issues related to the mapping of pages belonging to other
domains: For one, an assertion is wrong there, where the case actually
needs handling.  A NULL pointer de-reference could result on a release
build.  This is CVE-2025-58144.&lt;/p&gt;
&lt;p&gt;And then the P2M lock isn&amp;#39;t held until a page reference was actually
obtained (or the attempt to do so has failed).  Otherwise the page can
not only change type, but even ownership in between, thus allowing
domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-j9v5-p5pj-rmp7</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-58145</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-58145</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: xen, Ubuntu:18.04:LTS: xen, Ubuntu:20.04:LTS: xen, Ubuntu:22.04:LTS: xen, Ubuntu:24.04:LTS: xen, Ubuntu:25.10: xen, Ubuntu:26.04:LTS: xen&lt;/p&gt;
&lt;p&gt;[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling.  A NULL pointer de-reference could result on a release build.  This is CVE-2025-58144. And then the P2M lock isn&amp;#39;t held until a page reference was actually obtained (or the attempt to do so has failed).  Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: xen, Ubuntu:18.04:LTS: xen, Ubuntu:20.04:LTS: xen, Ubuntu:22.04:LTS: xen, Ubuntu:24.04:LTS: xen, Ubuntu:25.10: xen, Ubuntu:26.04:LTS: xen&lt;/p&gt;
&lt;p&gt;[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling.  A NULL pointer de-reference could result on a release build.  This is CVE-2025-58144. And then the P2M lock isn&amp;#39;t held until a page reference was actually obtained (or the attempt to do so has failed).  Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated.  This is CVE-2025-58145.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-58145</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2007 — Xen: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2007</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Xen ausnutzenEin Angreifer kann mehrere Schwachstellen in Xen ausnutzen, um einen Denial-of-Service-Angriff durchzuführen, Informationen offenzulegen oder Berechtigungen zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Xen ausnutzenEin Angreifer kann mehrere Schwachstellen in Xen ausnutzen, um einen Denial-of-Service-Angriff durchzuführen, Informationen offenzulegen oder Berechtigungen zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2007</guid>
    </item>
  </channel>
</rss>
