<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:18:26 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:73429 — Moderate: gawk security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:73429</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: gawk, AlmaLinux:10: gawk-all-langpacks&lt;/p&gt;
&lt;p&gt;The gawk packages contain the GNU version of awk, a text processing utility. Awk interprets a special-purpose programming language to do quick and easy text pattern matching and reformatting jobs.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Memory corruption via integer overflow (CVE-2026-40468)
  * gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service (CVE-2026-40553)
  * gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c (CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: gawk, AlmaLinux:10: gawk-all-langpacks&lt;/p&gt;
&lt;p&gt;The gawk packages contain the GNU version of awk, a text processing utility. Awk interprets a special-purpose programming language to do quick and easy text pattern matching and reformatting jobs.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Memory corruption via integer overflow (CVE-2026-40468)
  * gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service (CVE-2026-40553)
  * gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c (CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:73429</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-40467</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-40467</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: gawk, Alpaquita:25: gawk, Alpaquita:stream: gawk, BellSoft Hardened Containers:23: gawk, BellSoft Hardened Containers:25: gawk, BellSoft Hardened Containers:stream: gawk&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: gawk, Alpaquita:25: gawk, Alpaquita:stream: gawk, BellSoft Hardened Containers:23: gawk, BellSoft Hardened Containers:25: gawk, BellSoft Hardened Containers:stream: gawk&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-40467</guid>
    </item>
    <item>
      <title>EUVD-2026-335786</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-335786</link>
      <description>EUVD-2026-335786</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-335786</guid>
    </item>
    <item>
      <title>fkie_cve-2026-40467</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-40467</link>
      <description>&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-40467</guid>
    </item>
    <item>
      <title>GHSA-wj49-xjpv-3f4m</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wj49-xjpv-3f4m</link>
      <description>&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wj49-xjpv-3f4m</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-40467 — Use after free in gawk</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-40467</link>
      <description>msrc_CVE-2026-40467</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-40467</guid>
    </item>
    <item>
      <title>OESA-2026-3160 — gawk security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-3160</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: gawk&lt;/p&gt;
&lt;p&gt;The gawk package is the GNU implementation of awk. The awk utility interprets a special-purpose programming language that makes it possible to handle simple data-reformatting jobs with just a few lines of code.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Use After Free vulnerability has been found in &amp;amp;quot;io.c&amp;amp;quot; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.(CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;Integer overflow vulnerability has been found in &amp;amp;quot;builtin.c&amp;amp;quot; program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.(CVE-2026-40468)&lt;/p&gt;
&lt;p&gt;Integer overflow vulnerability has been found in &amp;amp;quot;builtin.c&amp;amp;quot; program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects 32-bit builds of gawk in versions 5.4.0 and below.(CVE-2026-40469)&lt;/p&gt;
&lt;p&gt;Buffer overflow vulnerability has been found in &amp;amp;quot;extension/readdir.c&amp;amp;quot; program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.(CVE-2026-40553)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: gawk&lt;/p&gt;
&lt;p&gt;The gawk package is the GNU implementation of awk. The awk utility interprets a special-purpose programming language that makes it possible to handle simple data-reformatting jobs with just a few lines of code.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;Use After Free vulnerability has been found in &amp;amp;quot;io.c&amp;amp;quot; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.(CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;Integer overflow vulnerability has been found in &amp;amp;quot;builtin.c&amp;amp;quot; program file of gawk. This issue may lead to memory exhaustion on the hosting operating system and could be used to overwrite gawk heap metadata and objects with attacker-controlled bytes. It affects gawk in versions 5.4.0 and below.(CVE-2026-40468)&lt;/p&gt;
&lt;p&gt;Integer overflow vulnerability has been found in &amp;amp;quot;builtin.c&amp;amp;quot; program file of gawk (do_sub() routine). This issue could be used to overwrite gawk heap metadata and objects causing the program to crash. It affects 32-bit builds of gawk in versions 5.4.0 and below.(CVE-2026-40469)&lt;/p&gt;
&lt;p&gt;Buffer overflow vulnerability has been found in &amp;amp;quot;extension/readdir.c&amp;amp;quot; program file of gawk (ftype() routine). This issue could be used to crash the program and potentially to achieve code execution, although the latter has not been confirmed to be feasible. It affects gawk in versions 5.4.0 and below.(CVE-2026-40553)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-3160</guid>
    </item>
    <item>
      <title>RHSA-2026:40041 — Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:40041</link>
      <description>&lt;p&gt;gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c gawk: gawk: Memory corruption via integer overflow gawk: gawk: Denial of Service due to integer overflow gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c gawk: gawk: Memory corruption via integer overflow gawk: gawk: Denial of Service due to integer overflow gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:40041</guid>
    </item>
    <item>
      <title>RLSA-2026:73429 — Moderate: gawk security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:73429</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: gawk&lt;/p&gt;
&lt;p&gt;The gawk packages contain the GNU version of awk, a text processing utility. Awk interprets a special-purpose programming language to do quick and easy text pattern matching and reformatting jobs.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Memory corruption via integer overflow (CVE-2026-40468)&lt;/p&gt;
&lt;p&gt;* gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service (CVE-2026-40553)&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c (CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: gawk&lt;/p&gt;
&lt;p&gt;The gawk packages contain the GNU version of awk, a text processing utility. Awk interprets a special-purpose programming language to do quick and easy text pattern matching and reformatting jobs.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Memory corruption via integer overflow (CVE-2026-40468)&lt;/p&gt;
&lt;p&gt;* gawk: Gawk: Buffer overflow in ftype() routine may lead to code execution or denial of service (CVE-2026-40553)&lt;/p&gt;
&lt;p&gt;* gawk: gawk: Denial of Service due to Use After Free vulnerability in io.c (CVE-2026-40467)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:73429</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-40467</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-40467</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: gawk, Ubuntu:Pro:16.04:LTS: gawk, Ubuntu:Pro:18.04:LTS: gawk, Ubuntu:Pro:20.04:LTS: gawk, Ubuntu:22.04:LTS: gawk, Ubuntu:24.04:LTS: gawk, Ubuntu:26.04:LTS: gawk&lt;/p&gt;
&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: gawk, Ubuntu:Pro:16.04:LTS: gawk, Ubuntu:Pro:18.04:LTS: gawk, Ubuntu:Pro:20.04:LTS: gawk, Ubuntu:22.04:LTS: gawk, Ubuntu:24.04:LTS: gawk, Ubuntu:26.04:LTS: gawk&lt;/p&gt;
&lt;p&gt;Use After Free vulnerability has been found in &amp;#34;io.c&amp;#34; program file of gawk (do_getline_redir() routine). This issue may lead to a crash. It affects gawk in versions 5.4.0 and below.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-40467</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-3649 — Red Hat Enterprise Linux (gawk): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3649</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen, Speicherbeschädigungen zu verursachen und möglicherweise beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um einen Denial of Service Angriff durchzuführen, Speicherbeschädigungen zu verursachen und möglicherweise beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3649</guid>
    </item>
  </channel>
</rss>
