<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:40:02 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-338952</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-338952</link>
      <description>EUVD-2026-338952</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-338952</guid>
    </item>
    <item>
      <title>fkie_cve-2026-46671</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-46671</link>
      <description>&lt;p&gt;Rust OneNote File Parser is a parser for Microsoft OneNote files implemented in Rust. Prior to version 1.1.1, a maliciously crafted `.onetoc2` table-of-contents file can cause `Parser::parse_notebook` to open arbitrary files on the host filesystem outside the notebook&amp;#39;s directory. The parser reads entry names listed inside the `.onetoc2` and joins them against the notebook&amp;#39;s base directory without validating that they are relative paths confined to that directory. The parser will bail out when the target file fails to parse as a OneNote section, so direct content exfiltration through the parser&amp;#39;s return value is not practical, though file-existence probing and denial-of-service via large or special files remain possible. Anyone using `onenote_parser` to parse .onetoc2 files received from untrusted sources is affected. Users who only ever parse their own notebooks are not at meaningful risk. The issue is fixed in onenote_parser 1.1.1. The fix rejects absolute paths, parent-directory components, and other invalid path characters in entry names, and additionally canonicalises the resolved path to confirm it stays inside the notebook&amp;#39;s base directory. For users who cannot upgrade to 1.1.1, only call `Parser::parse_notebook` on `.onetoc2` files from trusted sources. Alternatively, use `Parser::parse_section` / `Parser::parse_section_buffer` on individual .one files, which do not perform the directory walk.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Rust OneNote File Parser is a parser for Microsoft OneNote files implemented in Rust. Prior to version 1.1.1, a maliciously crafted `.onetoc2` table-of-contents file can cause `Parser::parse_notebook` to open arbitrary files on the host filesystem outside the notebook&amp;#39;s directory. The parser reads entry names listed inside the `.onetoc2` and joins them against the notebook&amp;#39;s base directory without validating that they are relative paths confined to that directory. The parser will bail out when the target file fails to parse as a OneNote section, so direct content exfiltration through the parser&amp;#39;s return value is not practical, though file-existence probing and denial-of-service via large or special files remain possible. Anyone using `onenote_parser` to parse .onetoc2 files received from untrusted sources is affected. Users who only ever parse their own notebooks are not at meaningful risk. The issue is fixed in onenote_parser 1.1.1. The fix rejects absolute paths, parent-directory components, and other invalid path characters in entry names, and additionally canonicalises the resolved path to confirm it stays inside the notebook&amp;#39;s base directory. For users who cannot upgrade to 1.1.1, only call `Parser::parse_notebook` on `.onetoc2` files from trusted sources. Alternatively, use `Parser::parse_section` / `Parser::parse_section_buffer` on individual .one files, which do not perform the directory walk.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-46671</guid>
    </item>
    <item>
      <title>GHSA-4j5m-wc25-pvh7 — Rust OneNote File Parser: Path traversal in `Parser::parse_notebook` allows reading files outside the notebook directory</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-4j5m-wc25-pvh7</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; crates.io: onenote_parser&lt;/p&gt;
&lt;p&gt;### Impact
A maliciously crafted `.onetoc2` table-of-contents file can cause `Parser::parse_notebook` to open arbitrary files on the host filesystem outside the notebook&amp;#39;s directory. The parser reads entry names listed inside the `.onetoc2` and joins them against the notebook&amp;#39;s base directory without validating that they are relative paths confined to that directory.&lt;/p&gt;
&lt;p&gt;The parser will bail out when the target file fails to parse as a OneNote section, so direct content exfiltration through the parser&amp;#39;s return value is not practical, though file-existence probing and denial-of-service via large or special files remain possible.&lt;/p&gt;
&lt;p&gt;Anyone using `onenote_parser` to parse .onetoc2 files received from untrusted sources is affected. Users who only ever parse their own notebooks are not at meaningful risk.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed in onenote_parser 1.1.1. The fix rejects absolute paths, parent-directory components, and other invalid path characters in entry names, and additionally canonicalises the resolved path to confirm it stays inside the notebook&amp;#39;s base directory.&lt;/p&gt;
&lt;p&gt;### Workarounds
For users who cannot upgrade to 1.1.1:&lt;/p&gt;
&lt;p&gt;- Only call `Parser::parse_notebook` on `.onetoc2` files from trusted sources.
- Alternatively, use `Parser::parse_section` / `Parser::parse_section_buffer` on individual .one files, which do not perform the directory walk.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; crates.io: onenote_parser&lt;/p&gt;
&lt;p&gt;### Impact
A maliciously crafted `.onetoc2` table-of-contents file can cause `Parser::parse_notebook` to open arbitrary files on the host filesystem outside the notebook&amp;#39;s directory. The parser reads entry names listed inside the `.onetoc2` and joins them against the notebook&amp;#39;s base directory without validating that they are relative paths confined to that directory.&lt;/p&gt;
&lt;p&gt;The parser will bail out when the target file fails to parse as a OneNote section, so direct content exfiltration through the parser&amp;#39;s return value is not practical, though file-existence probing and denial-of-service via large or special files remain possible.&lt;/p&gt;
&lt;p&gt;Anyone using `onenote_parser` to parse .onetoc2 files received from untrusted sources is affected. Users who only ever parse their own notebooks are not at meaningful risk.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed in onenote_parser 1.1.1. The fix rejects absolute paths, parent-directory components, and other invalid path characters in entry names, and additionally canonicalises the resolved path to confirm it stays inside the notebook&amp;#39;s base directory.&lt;/p&gt;
&lt;p&gt;### Workarounds
For users who cannot upgrade to 1.1.1:&lt;/p&gt;
&lt;p&gt;- Only call `Parser::parse_notebook` on `.onetoc2` files from trusted sources.
- Alternatively, use `Parser::parse_section` / `Parser::parse_section_buffer` on individual .one files, which do not perform the directory walk.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-4j5m-wc25-pvh7</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:11583-1 — clamav-1.5.4-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11583-1</link>
      <description>&lt;p&gt;clamav-1.5.4-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;clamav-1.5.4-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:11583-1</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:23706-1 — Security update for clamav</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:23706-1</link>
      <description>&lt;p&gt;Security update for clamav&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for clamav&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:23706-1</guid>
    </item>
  </channel>
</rss>
