<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 09:09:00 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-12495</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-12495</link>
      <description>bdu:2026-12495</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-12495</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-23446</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-23446</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-23446</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0547 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Certaines d'entre elles permettent à…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0547</link>
      <description>certfr-2026-avi-0547</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0547</guid>
    </item>
    <item>
      <title>EUVD-2026-364707</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-364707</link>
      <description>EUVD-2026-364707</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-364707</guid>
    </item>
    <item>
      <title>fkie_cve-2026-23446</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-23446</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: usb: aqc111: Do not perform PM inside suspend callback&lt;/p&gt;
&lt;p&gt;syzbot reports &amp;#34;task hung in rpm_resume&amp;#34;&lt;/p&gt;
&lt;p&gt;This is caused by aqc111_suspend calling
the PM variant of its write_cmd routine.&lt;/p&gt;
&lt;p&gt;The simplified call trace looks like this:&lt;/p&gt;
&lt;p&gt;rpm_suspend()
  usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING
    aqc111_suspend() - called for the usb device interface
      aqc111_write32_cmd()
        usb_autopm_get_interface()
          pm_runtime_resume_and_get()
            rpm_resume() - here we call rpm_resume() on our parent
              rpm_resume() - Here we wait for a status change that will never happen.&lt;/p&gt;
&lt;p&gt;At this point we block another task which holds
rtnl_lock and locks up the whole networking stack.&lt;/p&gt;
&lt;p&gt;Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: usb: aqc111: Do not perform PM inside suspend callback&lt;/p&gt;
&lt;p&gt;syzbot reports &amp;#34;task hung in rpm_resume&amp;#34;&lt;/p&gt;
&lt;p&gt;This is caused by aqc111_suspend calling
the PM variant of its write_cmd routine.&lt;/p&gt;
&lt;p&gt;The simplified call trace looks like this:&lt;/p&gt;
&lt;p&gt;rpm_suspend()
  usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING
    aqc111_suspend() - called for the usb device interface
      aqc111_write32_cmd()
        usb_autopm_get_interface()
          pm_runtime_resume_and_get()
            rpm_resume() - here we call rpm_resume() on our parent
              rpm_resume() - Here we wait for a status change that will never happen.&lt;/p&gt;
&lt;p&gt;At this point we block another task which holds
rtnl_lock and locks up the whole networking stack.&lt;/p&gt;
&lt;p&gt;Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-23446</guid>
    </item>
    <item>
      <title>GHSA-mqjm-rhm6-4854</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mqjm-rhm6-4854</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: usb: aqc111: Do not perform PM inside suspend callback&lt;/p&gt;
&lt;p&gt;syzbot reports &amp;#34;task hung in rpm_resume&amp;#34;&lt;/p&gt;
&lt;p&gt;This is caused by aqc111_suspend calling
the PM variant of its write_cmd routine.&lt;/p&gt;
&lt;p&gt;The simplified call trace looks like this:&lt;/p&gt;
&lt;p&gt;rpm_suspend()
  usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING
    aqc111_suspend() - called for the usb device interface
      aqc111_write32_cmd()
        usb_autopm_get_interface()
          pm_runtime_resume_and_get()
            rpm_resume() - here we call rpm_resume() on our parent
              rpm_resume() - Here we wait for a status change that will never happen.&lt;/p&gt;
&lt;p&gt;At this point we block another task which holds
rtnl_lock and locks up the whole networking stack.&lt;/p&gt;
&lt;p&gt;Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: usb: aqc111: Do not perform PM inside suspend callback&lt;/p&gt;
&lt;p&gt;syzbot reports &amp;#34;task hung in rpm_resume&amp;#34;&lt;/p&gt;
&lt;p&gt;This is caused by aqc111_suspend calling
the PM variant of its write_cmd routine.&lt;/p&gt;
&lt;p&gt;The simplified call trace looks like this:&lt;/p&gt;
&lt;p&gt;rpm_suspend()
  usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING
    aqc111_suspend() - called for the usb device interface
      aqc111_write32_cmd()
        usb_autopm_get_interface()
          pm_runtime_resume_and_get()
            rpm_resume() - here we call rpm_resume() on our parent
              rpm_resume() - Here we wait for a status change that will never happen.&lt;/p&gt;
&lt;p&gt;At this point we block another task which holds
rtnl_lock and locks up the whole networking stack.&lt;/p&gt;
&lt;p&gt;Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mqjm-rhm6-4854</guid>
    </item>
    <item>
      <title>ICSA-26-209-04 — Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-209-04</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-209-04</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-23446 — net: usb: aqc111: Do not perform PM inside suspend callback</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-23446</link>
      <description>msrc_CVE-2026-23446</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-23446</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:20826-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</guid>
    </item>
    <item>
      <title>SSA-019113 — SSA-019113: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6</title>
      <link>https://cve.radiocsirt.org/vuln/ssa-019113</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ssa-019113</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:21834-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:21834-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:21834-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-23446</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23446</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:Pro:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:Pro:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3 and 205 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: Do not perform PM inside suspend callback syzbot reports &amp;#34;task hung in rpm_resume&amp;#34; This is caused by aqc111_suspend calling the PM variant of its write_cmd routine. The simplified call trace looks like this: rpm_suspend()   usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING     aqc111_suspend() - called for the usb device interface       aqc111_write32_cmd()         usb_autopm_get_interface()           pm_runtime_resume_and_get()             rpm_resume() - here we call rpm_resume() on our parent               rpm_resume() - Here we wait for a status change that will never happen. At this point we block another task which holds rtnl_lock and locks up the whole networking stack. Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:Pro:18.04:LTS: linux-aws-5.4, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:Pro:18.04:LTS: linux-azure-5.4, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3 and 205 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: Do not perform PM inside suspend callback syzbot reports &amp;#34;task hung in rpm_resume&amp;#34; This is caused by aqc111_suspend calling the PM variant of its write_cmd routine. The simplified call trace looks like this: rpm_suspend()   usb_suspend_both() - here udev-&amp;gt;dev.power.runtime_status == RPM_SUSPENDING     aqc111_suspend() - called for the usb device interface       aqc111_write32_cmd()         usb_autopm_get_interface()           pm_runtime_resume_and_get()             rpm_resume() - here we call rpm_resume() on our parent               rpm_resume() - Here we wait for a status change that will never happen. At this point we block another task which holds rtnl_lock and locks up the whole networking stack. Fix this by replacing the write_cmd calls with their _nopm variants&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23446</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0985 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</guid>
    </item>
  </channel>
</rss>
