<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 23:58:05 +0000</lastBuildDate>
    <item>
      <title>BELL-CVE-2026-23463</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-23463</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-23463</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0547 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Debian LTS. Certaines d'entre elles permettent à…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0547</link>
      <description>certfr-2026-avi-0547</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0547</guid>
    </item>
    <item>
      <title>EUVD-2026-364716</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-364716</link>
      <description>EUVD-2026-364716</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-364716</guid>
    </item>
    <item>
      <title>fkie_cve-2026-23463</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-23463</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;soc: fsl: qbman: fix race condition in qman_destroy_fq&lt;/p&gt;
&lt;p&gt;When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between
fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and
WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered.&lt;/p&gt;
&lt;p&gt;Indeed, we can have:
         Thread A                             Thread B
    qman_destroy_fq()                    qman_create_fq()
      qman_release_fqid()
        qman_shutdown_fq()
        gen_pool_free()
           -- At this point, the fqid is available again --
                                           qman_alloc_fqid()
           -- so, we can get the just-freed fqid in thread B --
                                           fq-&amp;gt;fqid = fqid;
                                           fq-&amp;gt;idx = fqid * 2;
                                           WARN_ON(fq_table[fq-&amp;gt;idx]);
                                           fq_table[fq-&amp;gt;idx] = fq;
     fq_table[fq-&amp;gt;idx] = NULL;&lt;/p&gt;
&lt;p&gt;And adding some logs between qman_release_fqid() and
fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more.&lt;/p&gt;
&lt;p&gt;To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before
gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;soc: fsl: qbman: fix race condition in qman_destroy_fq&lt;/p&gt;
&lt;p&gt;When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between
fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and
WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered.&lt;/p&gt;
&lt;p&gt;Indeed, we can have:
         Thread A                             Thread B
    qman_destroy_fq()                    qman_create_fq()
      qman_release_fqid()
        qman_shutdown_fq()
        gen_pool_free()
           -- At this point, the fqid is available again --
                                           qman_alloc_fqid()
           -- so, we can get the just-freed fqid in thread B --
                                           fq-&amp;gt;fqid = fqid;
                                           fq-&amp;gt;idx = fqid * 2;
                                           WARN_ON(fq_table[fq-&amp;gt;idx]);
                                           fq_table[fq-&amp;gt;idx] = fq;
     fq_table[fq-&amp;gt;idx] = NULL;&lt;/p&gt;
&lt;p&gt;And adding some logs between qman_release_fqid() and
fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more.&lt;/p&gt;
&lt;p&gt;To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before
gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-23463</guid>
    </item>
    <item>
      <title>GHSA-cxrg-39g8-v6cj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cxrg-39g8-v6cj</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;soc: fsl: qbman: fix race condition in qman_destroy_fq&lt;/p&gt;
&lt;p&gt;When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between
fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and
WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered.&lt;/p&gt;
&lt;p&gt;Indeed, we can have:
         Thread A                             Thread B
    qman_destroy_fq()                    qman_create_fq()
      qman_release_fqid()
        qman_shutdown_fq()
        gen_pool_free()
           -- At this point, the fqid is available again --
                                           qman_alloc_fqid()
           -- so, we can get the just-freed fqid in thread B --
                                           fq-&amp;gt;fqid = fqid;
                                           fq-&amp;gt;idx = fqid * 2;
                                           WARN_ON(fq_table[fq-&amp;gt;idx]);
                                           fq_table[fq-&amp;gt;idx] = fq;
     fq_table[fq-&amp;gt;idx] = NULL;&lt;/p&gt;
&lt;p&gt;And adding some logs between qman_release_fqid() and
fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more.&lt;/p&gt;
&lt;p&gt;To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before
gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;soc: fsl: qbman: fix race condition in qman_destroy_fq&lt;/p&gt;
&lt;p&gt;When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between
fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and
WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered.&lt;/p&gt;
&lt;p&gt;Indeed, we can have:
         Thread A                             Thread B
    qman_destroy_fq()                    qman_create_fq()
      qman_release_fqid()
        qman_shutdown_fq()
        gen_pool_free()
           -- At this point, the fqid is available again --
                                           qman_alloc_fqid()
           -- so, we can get the just-freed fqid in thread B --
                                           fq-&amp;gt;fqid = fqid;
                                           fq-&amp;gt;idx = fqid * 2;
                                           WARN_ON(fq_table[fq-&amp;gt;idx]);
                                           fq_table[fq-&amp;gt;idx] = fq;
     fq_table[fq-&amp;gt;idx] = NULL;&lt;/p&gt;
&lt;p&gt;And adding some logs between qman_release_fqid() and
fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more.&lt;/p&gt;
&lt;p&gt;To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before
gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cxrg-39g8-v6cj</guid>
    </item>
    <item>
      <title>ICSA-26-209-04 — Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-26-209-04</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-26-209-04</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:20826-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:20826-1</guid>
    </item>
    <item>
      <title>SSA-019113 — SSA-019113: Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1.6</title>
      <link>https://cve.radiocsirt.org/vuln/ssa-019113</link>
      <description>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Multiple vulnerabilities have been identified in the additional GNU/Linux subsystem of the firmware version V3.1.6 for the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP (incl. SIPLUS variant).&lt;/p&gt;
&lt;p&gt;Siemens has released new versions for several affected products and recommends to update to the latest versions. Siemens is preparing further fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ssa-019113</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:21834-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:21834-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:21834-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-23463</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23463</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 225 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: fix race condition in qman_destroy_fq When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered. Indeed, we can have:          Thread A                             Thread B     qman_destroy_fq()                    qman_create_fq()       qman_release_fqid()         qman_shutdown_fq()         gen_pool_free()            -- At this point, the fqid is available again --                                            qman_alloc_fqid()            -- so, we can get the just-freed fqid in thread B --                                            fq-&amp;gt;fqid = fqid;                                            fq-&amp;gt;idx = fqid * 2;                                            WARN_ON(fq_table[fq-&amp;gt;idx]);                                            fq_table[fq-&amp;gt;idx] = fq;      fq_table[fq-&amp;gt;idx] = NULL; And adding some logs between qman_release_fqid() and fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more. To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0 and 225 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: soc: fsl: qbman: fix race condition in qman_destroy_fq When QMAN_FQ_FLAG_DYNAMIC_FQID is set, there&amp;#39;s a race condition between fq_table[fq-&amp;gt;idx] state and freeing/allocating from the pool and WARN_ON(fq_table[fq-&amp;gt;idx]) in qman_create_fq() gets triggered. Indeed, we can have:          Thread A                             Thread B     qman_destroy_fq()                    qman_create_fq()       qman_release_fqid()         qman_shutdown_fq()         gen_pool_free()            -- At this point, the fqid is available again --                                            qman_alloc_fqid()            -- so, we can get the just-freed fqid in thread B --                                            fq-&amp;gt;fqid = fqid;                                            fq-&amp;gt;idx = fqid * 2;                                            WARN_ON(fq_table[fq-&amp;gt;idx]);                                            fq_table[fq-&amp;gt;idx] = fq;      fq_table[fq-&amp;gt;idx] = NULL; And adding some logs between qman_release_fqid() and fq_table[fq-&amp;gt;idx] = NULL makes the WARN_ON() trigger a lot more. To prevent that, ensure that fq_table[fq-&amp;gt;idx] is set to NULL before gen_pool_free() is called by using smp_wmb().&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-23463</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-0985 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um unter anderem einen Denial of Service-Angriff auszuführen oder um Sicherheitsmechanismen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-0985</guid>
    </item>
  </channel>
</rss>
