<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:24:51 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-330228</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-330228</link>
      <description>EUVD-2026-330228</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-330228</guid>
    </item>
    <item>
      <title>fkie_cve-2026-40211</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-40211</link>
      <description>&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-40211</guid>
    </item>
    <item>
      <title>GHSA-8mqg-g8g6-fvw6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-8mqg-g8g6-fvw6</link>
      <description>&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-8mqg-g8g6-fvw6</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11411-1 — dnsdist-2.0.7-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11411-1</link>
      <description>&lt;p&gt;dnsdist-2.0.7-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;dnsdist-2.0.7-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11411-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:23123-1 — Security update for dnsdist</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:23123-1</link>
      <description>&lt;p&gt;Security update for dnsdist&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for dnsdist&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:23123-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-40211</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-40211</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: dnsdist, Ubuntu:Pro:18.04:LTS: dnsdist, Ubuntu:Pro:20.04:LTS: dnsdist, Ubuntu:Pro:22.04:LTS: dnsdist, Ubuntu:Pro:24.04:LTS: dnsdist, Ubuntu:25.10: dnsdist, Ubuntu:26.04:LTS: dnsdist&lt;/p&gt;
&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: dnsdist, Ubuntu:Pro:18.04:LTS: dnsdist, Ubuntu:Pro:20.04:LTS: dnsdist, Ubuntu:Pro:22.04:LTS: dnsdist, Ubuntu:Pro:24.04:LTS: dnsdist, Ubuntu:25.10: dnsdist, Ubuntu:26.04:LTS: dnsdist&lt;/p&gt;
&lt;p&gt;An attacker can send crafted DNS over HTTP/3 queries, triggering an exception that prevents some buffer from being freed right away. The buffer will be freed at the end of the QUIC connection, but on some setups it might be possible to open enough concurrent DoH3 streams to trigger an out-of-memory condition, resulting in a denial of service.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-40211</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2091 — PowerDNS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2091</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in PowerDNS ausnutzen, um Denial-of-Service-Zustände herbeizuführen, DNS-Caches zu manipulieren, Sicherheitsprüfungen zu umgehen, vertrauliche Informationen offenzulegen, DNSSEC-Validierungen zu beeinträchtigen oder die Integrität und Verfügbarkeit der DNS-Auflösung zu beeinflussen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in PowerDNS ausnutzen, um Denial-of-Service-Zustände herbeizuführen, DNS-Caches zu manipulieren, Sicherheitsprüfungen zu umgehen, vertrauliche Informationen offenzulegen, DNSSEC-Validierungen zu beeinträchtigen oder die Integrität und Verfügbarkeit der DNS-Auflösung zu beeinflussen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2091</guid>
    </item>
  </channel>
</rss>
