<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 15:25:31 +0000</lastBuildDate>
    <item>
      <title>4HZM000604 — ABB Ability Camera Connect Vulnerabilities in outdated 3rd party component (SQLite 3.2.4)</title>
      <link>https://cve.radiocsirt.org/vuln/4hzm000604</link>
      <description>&lt;p&gt;ABB is aware of public reports of vulnerabilities in a 3rd party dependency SQLite Version 3.2.4 which was delivered together with the installation package of Camera Connect Version 2.0.0.42 and below. An update is available that resolves a privately reported outdated 3rd party component with vulnerabilities in the product versions listed as affected in the advisory.&lt;/p&gt;
&lt;p&gt;An attacker who successfully exploited any of these vulnerabilities in the 3rd party component could potentially compromise the system in different ways.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;ABB is aware of public reports of vulnerabilities in a 3rd party dependency SQLite Version 3.2.4 which was delivered together with the installation package of Camera Connect Version 2.0.0.42 and below. An update is available that resolves a privately reported outdated 3rd party component with vulnerabilities in the product versions listed as affected in the advisory.&lt;/p&gt;
&lt;p&gt;An attacker who successfully exploited any of these vulnerabilities in the 3rd party component could potentially compromise the system in different ways.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/4hzm000604</guid>
    </item>
    <item>
      <title>ALSA-2025:11803 — Important: nodejs:22 security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:11803</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: nodejs, AlmaLinux:8: nodejs-devel, AlmaLinux:8: nodejs-docs, AlmaLinux:8: nodejs-full-i18n, AlmaLinux:8: nodejs-libs, AlmaLinux:8: nodejs-nodemon, AlmaLinux:8: nodejs-packaging, AlmaLinux:8: nodejs-packaging-bundler, AlmaLinux:8: npm, AlmaLinux:8: v8-12.4-devel&lt;/p&gt;
&lt;p&gt;Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sqlite: Integer Truncation in SQLite (CVE-2025-6965)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: nodejs, AlmaLinux:8: nodejs-devel, AlmaLinux:8: nodejs-docs, AlmaLinux:8: nodejs-full-i18n, AlmaLinux:8: nodejs-libs, AlmaLinux:8: nodejs-nodemon, AlmaLinux:8: nodejs-packaging, AlmaLinux:8: nodejs-packaging-bundler, AlmaLinux:8: npm, AlmaLinux:8: v8-12.4-devel&lt;/p&gt;
&lt;p&gt;Node.js is a software development platform for building fast and scalable network applications in the JavaScript programming language.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sqlite: Integer Truncation in SQLite (CVE-2025-6965)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:11803</guid>
    </item>
    <item>
      <title>bdu:2025-08786</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-08786</link>
      <description>bdu:2025-08786</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-08786</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-6965</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-6965</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: sqlite, Alpaquita:25: sqlite, Alpaquita:stream: sqlite, BellSoft Hardened Containers:23: sqlite, BellSoft Hardened Containers:25: sqlite, BellSoft Hardened Containers:stream: sqlite&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: sqlite, Alpaquita:25: sqlite, Alpaquita:stream: sqlite, BellSoft Hardened Containers:23: sqlite, BellSoft Hardened Containers:25: sqlite, BellSoft Hardened Containers:stream: sqlite&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-6965</guid>
    </item>
    <item>
      <title>BIT-sqlite-2025-6965 — Integer Truncation on SQLite</title>
      <link>https://cve.radiocsirt.org/vuln/bit-sqlite-2025-6965</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: sqlite&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Bitnami: sqlite&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bit-sqlite-2025-6965</guid>
    </item>
    <item>
      <title>certfr-2025-avi-0740 — De multiples vulnérabilités ont été découvertes dans Tenable Security Center. Certaines d'entre elles permettent à un a…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0740</link>
      <description>certfr-2025-avi-0740</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2025-avi-0740</guid>
    </item>
    <item>
      <title>EUVD-2026-307093</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-307093</link>
      <description>EUVD-2026-307093</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-307093</guid>
    </item>
    <item>
      <title>fkie_cve-2025-6965</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-6965</link>
      <description>&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-6965</guid>
    </item>
    <item>
      <title>GHSA-2m69-gcr7-jv3q — SQLitePCLRaw.lib.e_sqlite3 has a vulnerable dependency on SQLite</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-2m69-gcr7-jv3q</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: SQLitePCLRaw.lib.e_sqlite3, NuGet: SQLitePCLRaw.lib.e_sqlite3.android, NuGet: SQLitePCLRaw.lib.e_sqlite3.ios&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; NuGet: SQLitePCLRaw.lib.e_sqlite3, NuGet: SQLitePCLRaw.lib.e_sqlite3.android, NuGet: SQLitePCLRaw.lib.e_sqlite3.ios&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-2m69-gcr7-jv3q</guid>
    </item>
    <item>
      <title>ICSA-26-071-03 — Siemens SIDIS Prime</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-071-03</link>
      <description>&lt;p&gt;An issue was discovered in ECCurve.java and ECCurve.cs in Bouncy Castle Java (BC Java) before 1.78, BC Java LTS before 2.73.6, BC-FJA before 1.0.2.5, and BC C# .Net before 2.3.1. Importing an EC certificate with crafted F2m parameters can lead to excessive CPU consumption during the evaluation of the curve parameters. An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing. An issue was discovered in Bouncy Castle Java Cryptography APIs before 1.78. An Ed25519 verification code infinite loop can occur via a crafted signature and public key. Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers (from the client side) to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations. The client may cause asymmetric resource consumption. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE and validate the order of the public key. There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above. Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An issue was discovered in ECCurve.java and ECCurve.cs in Bouncy Castle Java (BC Java) before 1.78, BC Java LTS before 2.73.6, BC-FJA before 1.0.2.5, and BC C# .Net before 2.3.1. Importing an EC certificate with crafted F2m parameters can lead to excessive CPU consumption during the evaluation of the curve parameters. An issue was discovered in Bouncy Castle Java TLS API and JSSE Provider before 1.78. Timing-based leakage may occur in RSA based handshakes because of exception processing. An issue was discovered in Bouncy Castle Java Cryptography APIs before 1.78. An Ed25519 verification code infinite loop can occur via a crafted signature and public key. Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers (from the client side) to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations. The client may cause asymmetric resource consumption. The basic attack scenario is that the client must claim that it can only communicate with DHE, and the server must be configured to allow DHE and validate the order of the public key. There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above. Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-071-03</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-6965 — Integer Truncation on SQLite</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-6965</link>
      <description>msrc_CVE-2025-6965</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-6965</guid>
    </item>
    <item>
      <title>NCSC-2026-0023 — Kwetsbaarheden verholpen in Oracle PeopleSoft</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0023</link>
      <description>NCSC-2026-0023</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0023</guid>
    </item>
    <item>
      <title>OESA-2025-2160 — sqlite security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2025-2160</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: sqlite&lt;/p&gt;
&lt;p&gt;SQLite is a C-language library that implements a small, fast, self-contained,
high-reliability, full-featured, SQL database engine. SQLite is the most used
database engine in the world. SQLite is built into all mobile phones and most
computers and comes bundled inside countless other applications that people
use every day.It also include lemon and sqlite3_analyzer and tcl tools.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available, leading to a memory corruption issue.(CVE-2025-6965)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: sqlite&lt;/p&gt;
&lt;p&gt;SQLite is a C-language library that implements a small, fast, self-contained,
high-reliability, full-featured, SQL database engine. SQLite is the most used
database engine in the world. SQLite is built into all mobile phones and most
computers and comes bundled inside countless other applications that people
use every day.It also include lemon and sqlite3_analyzer and tcl tools.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available, leading to a memory corruption issue.(CVE-2025-6965)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2025-2160</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15368-1 — lemon-3.50.3-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15368-1</link>
      <description>&lt;p&gt;lemon-3.50.3-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;lemon-3.50.3-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15368-1</guid>
    </item>
    <item>
      <title>RHSA-2025:12036 — Red Hat Security Advisory: sqlite security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2025:12036</link>
      <description>&lt;p&gt;sqlite: Integer Truncation in SQLite&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;sqlite: Integer Truncation in SQLite&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2025:12036</guid>
    </item>
    <item>
      <title>SSA-225816 — SSA-225816: Memory Corruption Vulnerability in RUGGEDCOM CROSSBOW Station Access Controller Before V5.8</title>
      <link>https://cve.radiocsirt.org/vuln/ssa-225816</link>
      <description>&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ssa-225816</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:02744-1 — Security update for sqlite3</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:02744-1</link>
      <description>&lt;p&gt;Security update for sqlite3&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for sqlite3&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:02744-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-6965</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-6965</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: sqlite3, Ubuntu:Pro:16.04:LTS: sqlite3, Ubuntu:Pro:18.04:LTS: sqlite3, Ubuntu:Pro:20.04:LTS: sqlite3, Ubuntu:22.04:LTS: sqlite3, Ubuntu:24.04:LTS: sqlite3, Ubuntu:25.10: sqlite3&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: sqlite3, Ubuntu:Pro:16.04:LTS: sqlite3, Ubuntu:Pro:18.04:LTS: sqlite3, Ubuntu:Pro:20.04:LTS: sqlite3, Ubuntu:22.04:LTS: sqlite3, Ubuntu:24.04:LTS: sqlite3, Ubuntu:25.10: sqlite3&lt;/p&gt;
&lt;p&gt;There exists a vulnerability in SQLite versions before 3.50.2 where the number of aggregate terms could exceed the number of columns available. This could lead to a memory corruption issue. We recommend upgrading to version 3.50.2 or above.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-6965</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1646 — Red Hat Enterprise Linux (nodejs, perl): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1646</link>
      <description>&lt;p&gt;Ein lokaler oder entfernter authentisierter Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um beliebigen Code auszuführen oder andere nicht spezifizierte Effekte zu verursachen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler oder entfernter authentisierter Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um beliebigen Code auszuführen oder andere nicht spezifizierte Effekte zu verursachen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1646</guid>
    </item>
  </channel>
</rss>
