<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:10:38 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-00477</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-00477</link>
      <description>bdu:2026-00477</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-00477</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0044 — De multiples vulnérabilités ont été découvertes dans Microsoft Windows. Certaines d'entre elles permettent à un attaqua…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0044</link>
      <description>certfr-2026-avi-0044</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0044</guid>
    </item>
    <item>
      <title>EUVD-2026-343001</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-343001</link>
      <description>EUVD-2026-343001</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-343001</guid>
    </item>
    <item>
      <title>fkie_cve-2026-21265</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-21265</link>
      <description>&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot.
The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees.&lt;/p&gt;
&lt;p&gt;Certificate Authority (CA)
Location
Purpose
Expiration Date&lt;/p&gt;
&lt;p&gt;Microsoft Corporation KEK CA 2011
KEK
Signs updates to the DB and DBX
06/24/2026&lt;/p&gt;
&lt;p&gt;Microsoft Corporation UEFI CA 2011
DB
Signs 3rd party boot loaders, Option ROMs, etc.
06/27/2026&lt;/p&gt;
&lt;p&gt;Microsoft Windows Production PCA 2011
DB
Signs the Windows Boot Manager
10/19/2026&lt;/p&gt;
&lt;p&gt;For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot.
The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees.&lt;/p&gt;
&lt;p&gt;Certificate Authority (CA)
Location
Purpose
Expiration Date&lt;/p&gt;
&lt;p&gt;Microsoft Corporation KEK CA 2011
KEK
Signs updates to the DB and DBX
06/24/2026&lt;/p&gt;
&lt;p&gt;Microsoft Corporation UEFI CA 2011
DB
Signs 3rd party boot loaders, Option ROMs, etc.
06/27/2026&lt;/p&gt;
&lt;p&gt;Microsoft Windows Production PCA 2011
DB
Signs the Windows Boot Manager
10/19/2026&lt;/p&gt;
&lt;p&gt;For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-21265</guid>
    </item>
    <item>
      <title>GHSA-xqxc-72vf-v8f5</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-xqxc-72vf-v8f5</link>
      <description>&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot.
The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees.&lt;/p&gt;
&lt;p&gt;Certificate Authority (CA)
Location
Purpose
Expiration Date&lt;/p&gt;
&lt;p&gt;Microsoft Corporation KEK CA 2011
KEK
Signs updates to the DB and DBX
06/24/2026&lt;/p&gt;
&lt;p&gt;Microsoft Corporation UEFI CA 2011
DB
Signs 3rd party boot loaders, Option ROMs, etc.
06/27/2026&lt;/p&gt;
&lt;p&gt;Microsoft Windows Production PCA 2011
DB
Signs the Windows Boot Manager
10/19/2026&lt;/p&gt;
&lt;p&gt;For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot.
The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees.&lt;/p&gt;
&lt;p&gt;Certificate Authority (CA)
Location
Purpose
Expiration Date&lt;/p&gt;
&lt;p&gt;Microsoft Corporation KEK CA 2011
KEK
Signs updates to the DB and DBX
06/24/2026&lt;/p&gt;
&lt;p&gt;Microsoft Corporation UEFI CA 2011
DB
Signs 3rd party boot loaders, Option ROMs, etc.
06/27/2026&lt;/p&gt;
&lt;p&gt;Microsoft Windows Production PCA 2011
DB
Signs the Windows Boot Manager
10/19/2026&lt;/p&gt;
&lt;p&gt;For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-xqxc-72vf-v8f5</guid>
    </item>
    <item>
      <title>jvndb-2026-004359</title>
      <link>https://cve.radiocsirt.org/vuln/jvndb-2026-004359</link>
      <description>&lt;p&gt;CVE-2023-31096 | MITRE: CVE-2023-31096 Windows Agere Soft Modem Driver Elevation of Privilege Vulnerability&#13;
CVE-2024-55414 | Windows Motorola Soft Modem Driver Elevation of Privilege Vulnerability&#13;
CVE-2026-20804 | Windows Hello Tampering Vulnerability&#13;
CVE-2026-20805 | Desktop Window Manager Information Disclosure Vulnerability&#13;
CVE-2026-20809 | Windows Kernel Memory Elevation of Privilege Vulnerability&#13;
CVE-2026-20810 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability&#13;
CVE-2026-20812 | LDAP Tampering Vulnerability&#13;
CVE-2026-20814 | DirectX Graphics Kernel Elevation of Privilege Vulnerability&#13;
CVE-2026-20816 | Windows Installer Elevation of Privilege Vulnerability&#13;
CVE-2026-20817 | Windows Error Reporting Service Elevation of Privilege Vulnerability&#13;
CVE-2026-20820 | Windows Common Log File System Driver Elevation of Privilege Vulnerability&#13;
CVE-2026-20821 | Remote Procedure Call Information Disclosure Vulnerability&#13;
CVE-2026-20822 | Windows Graphics Component Elevation of Privilege Vulnerability&#13;
CVE-2026-20823 | Windows File Explorer Information Disclosure Vulnerability&#13;
CVE-2026-20824 | Windows Remote Assistance Security Feature Bypass Vulnerability&#13;
CVE-2026-20825 | Windows Hyper-V Information Disclosure Vulnerability&#13;
CVE-2026-20826 | Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability&#13;
CVE-2026-20827 | Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability&#13;
CVE-2026-208…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CVE-2023-31096 | MITRE: CVE-2023-31096 Windows Agere Soft Modem Driver Elevation of Privilege Vulnerability&#13;
CVE-2024-55414 | Windows Motorola Soft Modem Driver Elevation of Privilege Vulnerability&#13;
CVE-2026-20804 | Windows Hello Tampering Vulnerability&#13;
CVE-2026-20805 | Desktop Window Manager Information Disclosure Vulnerability&#13;
CVE-2026-20809 | Windows Kernel Memory Elevation of Privilege Vulnerability&#13;
CVE-2026-20810 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability&#13;
CVE-2026-20812 | LDAP Tampering Vulnerability&#13;
CVE-2026-20814 | DirectX Graphics Kernel Elevation of Privilege Vulnerability&#13;
CVE-2026-20816 | Windows Installer Elevation of Privilege Vulnerability&#13;
CVE-2026-20817 | Windows Error Reporting Service Elevation of Privilege Vulnerability&#13;
CVE-2026-20820 | Windows Common Log File System Driver Elevation of Privilege Vulnerability&#13;
CVE-2026-20821 | Remote Procedure Call Information Disclosure Vulnerability&#13;
CVE-2026-20822 | Windows Graphics Component Elevation of Privilege Vulnerability&#13;
CVE-2026-20823 | Windows File Explorer Information Disclosure Vulnerability&#13;
CVE-2026-20824 | Windows Remote Assistance Security Feature Bypass Vulnerability&#13;
CVE-2026-20825 | Windows Hyper-V Information Disclosure Vulnerability&#13;
CVE-2026-20826 | Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability&#13;
CVE-2026-20827 | Tablet Windows User Interface (TWINUI) Subsystem Information Disclosure Vulnerability&#13;
CVE-2026-208…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/jvndb-2026-004359</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-21265 — Secure Boot Certificate Expiration Security Feature Bypass Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-21265</link>
      <description>msrc_CVE-2026-21265</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-21265</guid>
    </item>
    <item>
      <title>NCSC-2026-0007 — Kwetsbaarheden verholpen in Microsoft Windows</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0007</link>
      <description>NCSC-2026-0007</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0007</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-21265</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-21265</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: secureboot-db, Ubuntu:14.04:LTS: shim, Ubuntu:14.04:LTS: shim-signed, Ubuntu:16.04:LTS: secureboot-db, Ubuntu:16.04:LTS: shim, Ubuntu:16.04:LTS: shim-signed&lt;/p&gt;
&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot. The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees. Certificate Authority (CA) Location Purpose Expiration Date Microsoft Corporation KEK CA 2011 KEK Signs updates to the DB and DBX 06/24/2026 Microsoft Corporation UEFI CA 2011 DB Signs 3rd party boot loaders, Option ROMs, etc. 06/27/2026 Microsoft Windows Production PCA 2011 DB Signs the Windows Boot Manager 10/19/2026 For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: secureboot-db, Ubuntu:14.04:LTS: shim, Ubuntu:14.04:LTS: shim-signed, Ubuntu:16.04:LTS: secureboot-db, Ubuntu:16.04:LTS: shim, Ubuntu:16.04:LTS: shim-signed&lt;/p&gt;
&lt;p&gt;Windows Secure Boot stores Microsoft certificates in the UEFI KEK and DB. These original certificates are approaching expiration, and devices containing affected certificate versions must update them to maintain Secure Boot functionality and avoid compromising security by losing security fixes related to Windows boot manager or Secure Boot. The operating system’s certificate update protection mechanism relies on firmware components that might contain defects, which can cause certificate trust updates to fail or behave unpredictably. This leads to potential disruption of the Secure Boot trust chain and requires careful validation and deployment to restore intended security guarantees. Certificate Authority (CA) Location Purpose Expiration Date Microsoft Corporation KEK CA 2011 KEK Signs updates to the DB and DBX 06/24/2026 Microsoft Corporation UEFI CA 2011 DB Signs 3rd party boot loaders, Option ROMs, etc. 06/27/2026 Microsoft Windows Production PCA 2011 DB Signs the Windows Boot Manager 10/19/2026 For more information see this CVE and Windows Secure Boot certificate expiration and CA updates.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-21265</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0083 — Microsoft Windows : Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0083</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in verschiedenen Versionen von Microsoft Windows und Microsoft Windows Server ausnutzen,, um erweiterte Privilegien, einschließlich Benutzer- und Administratorrechten, zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen und Daten zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in verschiedenen Versionen von Microsoft Windows und Microsoft Windows Server ausnutzen,, um erweiterte Privilegien, einschließlich Benutzer- und Administratorrechten, zu erlangen, beliebigen Code auszuführen, Sicherheitsmaßnahmen zu umgehen, vertrauliche Informationen offenzulegen, einen Denial-of-Service-Zustand zu verursachen und Daten zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0083</guid>
    </item>
  </channel>
</rss>
