<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:32:59 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-12645</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-12645</link>
      <description>bdu:2026-12645</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-12645</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-23442</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-23442</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-23442</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0548 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian. Certaines d'entre elles permettent à un…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0548</link>
      <description>certfr-2026-avi-0548</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0548</guid>
    </item>
    <item>
      <title>EUVD-2026-323487</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-323487</link>
      <description>EUVD-2026-323487</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-323487</guid>
    </item>
    <item>
      <title>fkie_cve-2026-23442</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-23442</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ipv6: add NULL checks for idev in SRv6 paths&lt;/p&gt;
&lt;p&gt;__in6_dev_get() can return NULL when the device has no IPv6 configuration
(e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER).&lt;/p&gt;
&lt;p&gt;Add NULL checks for idev returned by __in6_dev_get() in both
seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL
pointer dereferences.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ipv6: add NULL checks for idev in SRv6 paths&lt;/p&gt;
&lt;p&gt;__in6_dev_get() can return NULL when the device has no IPv6 configuration
(e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER).&lt;/p&gt;
&lt;p&gt;Add NULL checks for idev returned by __in6_dev_get() in both
seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL
pointer dereferences.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-23442</guid>
    </item>
    <item>
      <title>GHSA-prgg-rgfw-vr94</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-prgg-rgfw-vr94</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ipv6: add NULL checks for idev in SRv6 paths&lt;/p&gt;
&lt;p&gt;__in6_dev_get() can return NULL when the device has no IPv6 configuration
(e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER).&lt;/p&gt;
&lt;p&gt;Add NULL checks for idev returned by __in6_dev_get() in both
seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL
pointer dereferences.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;ipv6: add NULL checks for idev in SRv6 paths&lt;/p&gt;
&lt;p&gt;__in6_dev_get() can return NULL when the device has no IPv6 configuration
(e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER).&lt;/p&gt;
&lt;p&gt;Add NULL checks for idev returned by __in6_dev_get() in both
seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL
pointer dereferences.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-prgg-rgfw-vr94</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-23442 — ipv6: add NULL checks for idev in SRv6 paths</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-23442</link>
      <description>msrc_CVE-2026-23442</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-23442</guid>
    </item>
    <item>
      <title>OESA-2026-2172 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2172</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Access (WPA, WPA2, or WPA3) or Wired Equivalent Privacy (WEP), an adversary can exploit this vulnerability to inject arbitrary frames towards devices that support receiving non-SSP A-MSDU frames. NOTE: this issue exists because of an incorrect fix for CVE-2020-24588. P802.11-REVme, as of early 2025, is a planned release of the 802.11 standard.(CVE-2025-27558)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: act_ife: Fix metalist update behavior&lt;/p&gt;
&lt;p&gt;Whenever an ife action replace changes the metalist, instead of
replacing the old data on the metalist, the current ife code is appending
the new metadata. Aside from being innapropriate behavior, this may lead
to an unbounded addition of metadata to the metalist which might cause an
out of bounds error when running the encode op:&lt;/p&gt;
&lt;p&gt;[  138.423369][    C1] ==================================================================
[  138.424317][    C1] BUG: KASAN: slab-out-of-bounds in ife_tlv_meta_encode (net/ife/ife.c:168)
[  138.424906][    C1] Write of size 4 at addr ffff8880077f4ffe by task ife_out_out_bou/255
[  138.425778][    C1] CPU: 1 UID: 0 PID: 255 Comm: ife_out_out_bou Not tainted 7.0.0-rc1-00169-gfbdfa8da05b6 #624 PREEMPT(full)
[  138.425795][    C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011
[  138.425…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;IEEE P802.11-REVme D1.1 through D7.0 allows FragAttacks against mesh networks. In mesh networks using Wi-Fi Protected Access (WPA, WPA2, or WPA3) or Wired Equivalent Privacy (WEP), an adversary can exploit this vulnerability to inject arbitrary frames towards devices that support receiving non-SSP A-MSDU frames. NOTE: this issue exists because of an incorrect fix for CVE-2020-24588. P802.11-REVme, as of early 2025, is a planned release of the 802.11 standard.(CVE-2025-27558)&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net/sched: act_ife: Fix metalist update behavior&lt;/p&gt;
&lt;p&gt;Whenever an ife action replace changes the metalist, instead of
replacing the old data on the metalist, the current ife code is appending
the new metadata. Aside from being innapropriate behavior, this may lead
to an unbounded addition of metadata to the metalist which might cause an
out of bounds error when running the encode op:&lt;/p&gt;
&lt;p&gt;[  138.423369][    C1] ==================================================================
[  138.424317][    C1] BUG: KASAN: slab-out-of-bounds in ife_tlv_meta_encode (net/ife/ife.c:168)
[  138.424906][    C1] Write of size 4 at addr ffff8880077f4ffe by task ife_out_out_bou/255
[  138.425778][    C1] CPU: 1 UID: 0 PID: 255 Comm: ife_out_out_bou Not tainted 7.0.0-rc1-00169-gfbdfa8da05b6 #624 PREEMPT(full)
[  138.425795][    C1] Hardware name: Bochs Bochs, BIOS Bochs 01/01/2011
[  138.425…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2172</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:20826-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</guid>
    </item>
    <item>
      <title>RLSA-2026:64775 — Important: kernel security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:64775</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: kernel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: can: bcm: add locking for bcm_op runtime updates (CVE-2025-38004)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: add NULL checks for idev in SRv6 paths (CVE-2026-23442)&lt;/p&gt;
&lt;p&gt;* kernel: udp: Fix wildcard bind conflict check when using hash2 (CVE-2026-31503)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: prevent possible UaF in addrconf_permanent_addr() (CVE-2026-43339)&lt;/p&gt;
&lt;p&gt;* kernel: tcp: call sk_data_ready() after listener migration (CVE-2026-46015)&lt;/p&gt;
&lt;p&gt;* kernel: inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (CVE-2026-46266)&lt;/p&gt;
&lt;p&gt;* kernel: flow_dissector: do not dissect PPPoE PFC frames (CVE-2026-46306)&lt;/p&gt;
&lt;p&gt;* kernel: io_uring/poll: fix signed comparison in io_poll_get_ownership() (CVE-2026-52933)&lt;/p&gt;
&lt;p&gt;* kernel: ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (CVE-2026-53075)&lt;/p&gt;
&lt;p&gt;* kernel: KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CVE-2026-53277)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: sit: reload inner IPv6 header after GSO offloads (CVE-2026-53228)&lt;/p&gt;
&lt;p&gt;* kernel: net: add pskb_may_pull() to skb_gro_receive_list() (CVE-2026-53235)&lt;/p&gt;
&lt;p&gt;* kernel: net: guard timestamp cmsgs to real error queue skbs (CVE-2026-53223)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: mcast: Fix use-after-free when processing MLD queries (CVE-2026-53275)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (CVE-2026-53259)&lt;/p&gt;
&lt;p&gt;* kernel: ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CVE-2026-64002)&lt;/p&gt;
&lt;p&gt;*…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: kernel&lt;/p&gt;
&lt;p&gt;The kernel packages contain the Linux kernel, the core of any Linux operating system.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* kernel: can: bcm: add locking for bcm_op runtime updates (CVE-2025-38004)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: add NULL checks for idev in SRv6 paths (CVE-2026-23442)&lt;/p&gt;
&lt;p&gt;* kernel: udp: Fix wildcard bind conflict check when using hash2 (CVE-2026-31503)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: prevent possible UaF in addrconf_permanent_addr() (CVE-2026-43339)&lt;/p&gt;
&lt;p&gt;* kernel: tcp: call sk_data_ready() after listener migration (CVE-2026-46015)&lt;/p&gt;
&lt;p&gt;* kernel: inet: RAW sockets using IPPROTO_RAW MUST drop incoming ICMP (CVE-2026-46266)&lt;/p&gt;
&lt;p&gt;* kernel: flow_dissector: do not dissect PPPoE PFC frames (CVE-2026-46306)&lt;/p&gt;
&lt;p&gt;* kernel: io_uring/poll: fix signed comparison in io_poll_get_ownership() (CVE-2026-52933)&lt;/p&gt;
&lt;p&gt;* kernel: ppp: require CAP_NET_ADMIN in target netns for unattached ioctls (CVE-2026-53075)&lt;/p&gt;
&lt;p&gt;* kernel: KVM: arm64: Take the SRCU lock for page table walks in fault injection and AT emulation (CVE-2026-53277)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: sit: reload inner IPv6 header after GSO offloads (CVE-2026-53228)&lt;/p&gt;
&lt;p&gt;* kernel: net: add pskb_may_pull() to skb_gro_receive_list() (CVE-2026-53235)&lt;/p&gt;
&lt;p&gt;* kernel: net: guard timestamp cmsgs to real error queue skbs (CVE-2026-53223)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: mcast: Fix use-after-free when processing MLD queries (CVE-2026-53275)&lt;/p&gt;
&lt;p&gt;* kernel: ipv6: anycast: insert aca into global hash under idev-&amp;gt;lock (CVE-2026-53259)&lt;/p&gt;
&lt;p&gt;* kernel: ipv4: free net-&amp;gt;ipv4.sysctl_local_reserved_ports after unregister_net_sysctl_table() (CVE-2026-64002)&lt;/p&gt;
&lt;p&gt;*…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:64775</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:2068-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:2068-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:2068-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-23442</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23442</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 225 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: ipv6: add NULL checks for idev in SRv6 paths __in6_dev_get() can return NULL when the device has no IPv6 configuration (e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER). Add NULL checks for idev returned by __in6_dev_get() in both seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL pointer dereferences.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 225 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: ipv6: add NULL checks for idev in SRv6 paths __in6_dev_get() can return NULL when the device has no IPv6 configuration (e.g. MTU &amp;lt; IPV6_MIN_MTU or after NETDEV_UNREGISTER). Add NULL checks for idev returned by __in6_dev_get() in both seg6_hmac_validate_skb() and ipv6_srh_rcv() to prevent potential NULL pointer dereferences.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23442</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0985 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</guid>
    </item>
  </channel>
</rss>
