<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 17:58:48 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-1067 — De multiples vulnérabilités ont été découvertes dans les produits IBM. Certaines d'entre elles permettent à un attaquan…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1067</link>
      <description>certfr-2026-avi-1067</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-1067</guid>
    </item>
    <item>
      <title>EUVD-2026-327702</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-327702</link>
      <description>EUVD-2026-327702</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-327702</guid>
    </item>
    <item>
      <title>fkie_cve-2026-12087</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-12087</link>
      <description>&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-12087</guid>
    </item>
    <item>
      <title>GHSA-q5cv-5vf6-95gp</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-q5cv-5vf6-95gp</link>
      <description>&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-q5cv-5vf6-95gp</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-12087 — Socket versions before 2.041 for Perl have an out-of-bounds heap read</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-12087</link>
      <description>msrc_CVE-2026-12087</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-12087</guid>
    </item>
    <item>
      <title>NCSC-2026-0321 — Meerdere kwetsbaarheden verholpen in IBM AIX en IBM PowerVM VIOS</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0321</link>
      <description>NCSC-2026-0321</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0321</guid>
    </item>
    <item>
      <title>OESA-2026-2843 — perl security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2843</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: perl&lt;/p&gt;
&lt;p&gt;Perl 5 is a highly capable, feature-rich programming language with over 30 years of development. Perl 5 runs on over 100 platforms from portables to mainframes and is suitable for both rapid prototyping and large scale development projects.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.(CVE-2026-12087)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: perl&lt;/p&gt;
&lt;p&gt;Perl 5 is a highly capable, feature-rich programming language with over 30 years of development. Perl 5 runs on over 100 platforms from portables to mainframes and is suitable for both rapid prototyping and large scale development projects.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read.&lt;/p&gt;
&lt;p&gt;In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer.&lt;/p&gt;
&lt;p&gt;Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.(CVE-2026-12087)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2843</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:21411-1 — Security update for perl</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21411-1</link>
      <description>&lt;p&gt;Security update for perl&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for perl&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:21411-1</guid>
    </item>
    <item>
      <title>RHSA-2026:11342 — Red Hat Security Advisory: Red Hat Hardened Images RPMs bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:11342</link>
      <description>&lt;p&gt;perl-Socket: perl-Socket: Information Disclosure due to Out-of-Bounds Read&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;perl-Socket: perl-Socket: Information Disclosure due to Out-of-Bounds Read&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:11342</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22847-1 — Security update for perl</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22847-1</link>
      <description>&lt;p&gt;Security update for perl&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for perl&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22847-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-12087</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12087</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: perl, Ubuntu:Pro:16.04:LTS: perl, Ubuntu:16.04:LTS: libsocket-perl, Ubuntu:Pro:18.04:LTS: perl, Ubuntu:18.04:LTS: libsocket-perl, Ubuntu:Pro:20.04:LTS: perl, Ubuntu:20.04:LTS: libsocket-perl, Ubuntu:22.04:LTS: libsocket-perl, Ubuntu:22.04:LTS: perl, Ubuntu:24.04:LTS: libsocket-perl and 5 more&lt;/p&gt;
&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read. In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer. Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: perl, Ubuntu:Pro:16.04:LTS: perl, Ubuntu:16.04:LTS: libsocket-perl, Ubuntu:Pro:18.04:LTS: perl, Ubuntu:18.04:LTS: libsocket-perl, Ubuntu:Pro:20.04:LTS: perl, Ubuntu:20.04:LTS: libsocket-perl, Ubuntu:22.04:LTS: libsocket-perl, Ubuntu:22.04:LTS: perl, Ubuntu:24.04:LTS: libsocket-perl and 5 more&lt;/p&gt;
&lt;p&gt;Socket versions before 2.041 for Perl have an out-of-bounds heap read. In Socket.xs, pack_ip_mreq_source() checks the length of its source argument before the argument is read, so the check tests the byte length carried over from the preceding multiaddr argument instead. Both addresses occupy a 4-byte field, so a valid multiaddr lets a source of any length pass the check, and the source is then copied into the 4-byte imr_sourceaddr field with a fixed-size copy. A source shorter than 4 bytes is not rejected, and the copy reads up to 3 bytes past the end of its buffer. Calling pack_ip_mreq_source() with a source value shorter than 4 bytes copies adjacent heap memory into the returned packed structure.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12087</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2858 — IBM AIX und VIOS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2858</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM AIX und IBM VIOS ausnutzen, um beliebigen Programmcode auszuführen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM AIX und IBM VIOS ausnutzen, um beliebigen Programmcode auszuführen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2858</guid>
    </item>
  </channel>
</rss>
