<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 16:46:51 +0000</lastBuildDate>
    <item>
      <title>bdu:2026-12800</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-12800</link>
      <description>bdu:2026-12800</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-12800</guid>
    </item>
    <item>
      <title>BELL-CVE-2026-43078</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-43078</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-43078</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0638 — De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Elles permettent à un attaquant de provoq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0638</link>
      <description>certfr-2026-avi-0638</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0638</guid>
    </item>
    <item>
      <title>EUVD-2026-347822</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-347822</link>
      <description>EUVD-2026-347822</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-347822</guid>
    </item>
    <item>
      <title>fkie_cve-2026-43078</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-43078</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl&lt;/p&gt;
&lt;p&gt;When page reassignment was added to af_alg_pull_tsgl the original
loop wasn&amp;#39;t updated so it may try to reassign one more page than
necessary.&lt;/p&gt;
&lt;p&gt;Add the check to the reassignment so that this does not happen.&lt;/p&gt;
&lt;p&gt;Also update the comment which still refers to the obsolete offset
argument.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl&lt;/p&gt;
&lt;p&gt;When page reassignment was added to af_alg_pull_tsgl the original
loop wasn&amp;#39;t updated so it may try to reassign one more page than
necessary.&lt;/p&gt;
&lt;p&gt;Add the check to the reassignment so that this does not happen.&lt;/p&gt;
&lt;p&gt;Also update the comment which still refers to the obsolete offset
argument.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-43078</guid>
    </item>
    <item>
      <title>GHSA-fqqq-mg72-x273</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fqqq-mg72-x273</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl&lt;/p&gt;
&lt;p&gt;When page reassignment was added to af_alg_pull_tsgl the original
loop wasn&amp;#39;t updated so it may try to reassign one more page than
necessary.&lt;/p&gt;
&lt;p&gt;Add the check to the reassignment so that this does not happen.&lt;/p&gt;
&lt;p&gt;Also update the comment which still refers to the obsolete offset
argument.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl&lt;/p&gt;
&lt;p&gt;When page reassignment was added to af_alg_pull_tsgl the original
loop wasn&amp;#39;t updated so it may try to reassign one more page than
necessary.&lt;/p&gt;
&lt;p&gt;Add the check to the reassignment so that this does not happen.&lt;/p&gt;
&lt;p&gt;Also update the comment which still refers to the obsolete offset
argument.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fqqq-mg72-x273</guid>
    </item>
    <item>
      <title>OESA-2026-2673 — kernel security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2673</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: hamradio: fix memory leak in mkiss_close&lt;/p&gt;
&lt;p&gt;My local syzbot instance hit memory leak in
mkiss_open()[1]. The problem was in missing
free_netdev() in mkiss_close().&lt;/p&gt;
&lt;p&gt;In mkiss_open() netdevice is allocated and then
registered, but in mkiss_close() netdevice was
only unregistered, but not freed.&lt;/p&gt;
&lt;p&gt;Fail log:&lt;/p&gt;
&lt;p&gt;BUG: memory leak
unreferenced object 0xffff8880281ba000 (size 4096):
  comm &amp;amp;quot;syz-executor.1&amp;amp;quot;, pid 11443, jiffies 4295046091 (age 17.660s)
  hex dump (first 32 bytes):
    61 78 30 00 00 00 00 00 00 00 00 00 00 00 00 00  ax0.............
    00 27 fa 2a 80 88 ff ff 00 00 00 00 00 00 00 00  .&amp;amp;apos;.*............
  backtrace:
    [&amp;amp;lt;ffffffff81a27201&amp;amp;gt;] kvmalloc_node+0x61/0xf0
    [&amp;amp;lt;ffffffff8706e7e8&amp;amp;gt;] alloc_netdev_mqs+0x98/0xe80
    [&amp;amp;lt;ffffffff84e64192&amp;amp;gt;] mkiss_open+0xb2/0x6f0 [1]
    [&amp;amp;lt;ffffffff842355db&amp;amp;gt;] tty_ldisc_open+0x9b/0x110
    [&amp;amp;lt;ffffffff84236488&amp;amp;gt;] tty_set_ldisc+0x2e8/0x670
    [&amp;amp;lt;ffffffff8421f7f3&amp;amp;gt;] tty_ioctl+0xda3/0x1440
    [&amp;amp;lt;ffffffff81c9f273&amp;amp;gt;] __x64_sys_ioctl+0x193/0x200
    [&amp;amp;lt;ffffffff8911263a&amp;amp;gt;] do_syscall_64+0x3a/0xb0
    [&amp;amp;lt;ffffffff89200068&amp;amp;gt;] entry_SYSCALL_64_after_hwframe+0x44/0xae&lt;/p&gt;
&lt;p&gt;BUG: memory leak
unreferenced object 0xffff8880141a9a00 (size 96):
  comm &amp;amp;quot;syz-executor.1&amp;amp;quot;, pid 11443, jiffies 4295046091 (age 17.660s)
  hex dump (first 32 bytes):
    e8 a2 1…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: kernel&lt;/p&gt;
&lt;p&gt;The Linux Kernel, the operating system core itself.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;net: hamradio: fix memory leak in mkiss_close&lt;/p&gt;
&lt;p&gt;My local syzbot instance hit memory leak in
mkiss_open()[1]. The problem was in missing
free_netdev() in mkiss_close().&lt;/p&gt;
&lt;p&gt;In mkiss_open() netdevice is allocated and then
registered, but in mkiss_close() netdevice was
only unregistered, but not freed.&lt;/p&gt;
&lt;p&gt;Fail log:&lt;/p&gt;
&lt;p&gt;BUG: memory leak
unreferenced object 0xffff8880281ba000 (size 4096):
  comm &amp;amp;quot;syz-executor.1&amp;amp;quot;, pid 11443, jiffies 4295046091 (age 17.660s)
  hex dump (first 32 bytes):
    61 78 30 00 00 00 00 00 00 00 00 00 00 00 00 00  ax0.............
    00 27 fa 2a 80 88 ff ff 00 00 00 00 00 00 00 00  .&amp;amp;apos;.*............
  backtrace:
    [&amp;amp;lt;ffffffff81a27201&amp;amp;gt;] kvmalloc_node+0x61/0xf0
    [&amp;amp;lt;ffffffff8706e7e8&amp;amp;gt;] alloc_netdev_mqs+0x98/0xe80
    [&amp;amp;lt;ffffffff84e64192&amp;amp;gt;] mkiss_open+0xb2/0x6f0 [1]
    [&amp;amp;lt;ffffffff842355db&amp;amp;gt;] tty_ldisc_open+0x9b/0x110
    [&amp;amp;lt;ffffffff84236488&amp;amp;gt;] tty_set_ldisc+0x2e8/0x670
    [&amp;amp;lt;ffffffff8421f7f3&amp;amp;gt;] tty_ioctl+0xda3/0x1440
    [&amp;amp;lt;ffffffff81c9f273&amp;amp;gt;] __x64_sys_ioctl+0x193/0x200
    [&amp;amp;lt;ffffffff8911263a&amp;amp;gt;] do_syscall_64+0x3a/0xb0
    [&amp;amp;lt;ffffffff89200068&amp;amp;gt;] entry_SYSCALL_64_after_hwframe+0x44/0xae&lt;/p&gt;
&lt;p&gt;BUG: memory leak
unreferenced object 0xffff8880141a9a00 (size 96):
  comm &amp;amp;quot;syz-executor.1&amp;amp;quot;, pid 11443, jiffies 4295046091 (age 17.660s)
  hex dump (first 32 bytes):
    e8 a2 1…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2673</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-43078</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-43078</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3 and 224 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl When page reassignment was added to af_alg_pull_tsgl the original loop wasn&amp;#39;t updated so it may try to reassign one more page than necessary. Add the check to the reassignment so that this does not happen. Also update the comment which still refers to the obsolete offset argument.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe, Ubuntu:Pro:16.04:LTS: linux-oracle, Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:Pro:18.04:LTS: linux, Ubuntu:Pro:18.04:LTS: linux-aws, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3 and 224 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: crypto: af_alg - Fix page reassignment overflow in af_alg_pull_tsgl When page reassignment was added to af_alg_pull_tsgl the original loop wasn&amp;#39;t updated so it may try to reassign one more page than necessary. Add the check to the reassignment so that this does not happen. Also update the comment which still refers to the obsolete offset argument.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-43078</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1385 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1385</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service zu verursachen, Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen oder potentiell beliebigen Programmcode auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen Denial of Service zu verursachen, Informationen offenzulegen, Sicherheitsmaßnahmen zu umgehen oder potentiell beliebigen Programmcode auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1385</guid>
    </item>
  </channel>
</rss>
