<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:39:24 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:4898 — Important: capstone security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:4898</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: capstone, AlmaLinux:9: capstone-devel, AlmaLinux:9: capstone-java, AlmaLinux:9: python3-capstone&lt;/p&gt;
&lt;p&gt;Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)
  * capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: capstone, AlmaLinux:9: capstone-devel, AlmaLinux:9: capstone-java, AlmaLinux:9: python3-capstone&lt;/p&gt;
&lt;p&gt;Capstone is a disassembly framework with the target of becoming the ultimate disasm engine for binary analysis and reversing in the security community.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* capstone: Capstone: Memory corruption via unchecked vsnprintf return (CVE-2025-68114)
  * capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. (CVE-2025-67873)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:4898</guid>
    </item>
    <item>
      <title>bdu:2026-04944</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-04944</link>
      <description>bdu:2026-04944</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-04944</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-67873</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-67873</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: capstone, Alpaquita:stream: capstone&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:25: capstone, Alpaquita:stream: capstone&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-67873</guid>
    </item>
    <item>
      <title>EUVD-2026-264005</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-264005</link>
      <description>EUVD-2026-264005</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-264005</guid>
    </item>
    <item>
      <title>fkie_cve-2025-67873</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-67873</link>
      <description>&lt;p&gt;Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-67873</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-67873 — Capstone doesn't check Skipdata length, leading to cs_insn.bytes heap buffer overflow</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-67873</link>
      <description>msrc_CVE-2025-67873</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-67873</guid>
    </item>
    <item>
      <title>RHSA-2026:12781 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:12781</link>
      <description>&lt;p&gt;capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:12781</guid>
    </item>
    <item>
      <title>RHSA-2026:4898 — Red Hat Security Advisory: capstone security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:4898</link>
      <description>&lt;p&gt;capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;capstone: Capstone: Heap buffer overflow via skipdata callback allows denial of service or arbitrary code execution. capstone: Capstone: Memory corruption via unchecked vsnprintf return&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:4898</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:20054-1 — Security update for capstone</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:20054-1</link>
      <description>&lt;p&gt;Security update for capstone&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for capstone&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:20054-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-67873</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-67873</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: capstone, Ubuntu:18.04:LTS: capstone, Ubuntu:20.04:LTS: capstone, Ubuntu:22.04:LTS: capstone, Ubuntu:24.04:LTS: capstone, Ubuntu:25.10: capstone, Ubuntu:26.04:LTS: capstone&lt;/p&gt;
&lt;p&gt;Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: capstone, Ubuntu:18.04:LTS: capstone, Ubuntu:20.04:LTS: capstone, Ubuntu:22.04:LTS: capstone, Ubuntu:24.04:LTS: capstone, Ubuntu:25.10: capstone, Ubuntu:26.04:LTS: capstone&lt;/p&gt;
&lt;p&gt;Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, Skipdata length is not bounds-checked, so a user-provided skipdata callback can make cs_disasm/cs_disasm_iter memcpy more than 24 bytes into cs_insn.bytes, causing a heap buffer overflow in the disassembly path. Commit cbef767ab33b82166d263895f24084b75b316df3 fixes the issue.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-67873</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0769 — Red Hat Enterprise Linux (capstone) und OpenShift (rhcos): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0769</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux und Red Hat OpenShift ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Dateien zu manipulieren, und um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux und Red Hat OpenShift ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Dateien zu manipulieren, und um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0769</guid>
    </item>
  </channel>
</rss>
