<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 19:53:30 +0000</lastBuildDate>
    <item>
      <title>BELL-CVE-2026-48959</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-48959</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: perl, Alpaquita:25: perl, Alpaquita:stream: perl, BellSoft Hardened Containers:23: perl, BellSoft Hardened Containers:25: perl, BellSoft Hardened Containers:stream: perl&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: perl, Alpaquita:25: perl, Alpaquita:stream: perl, BellSoft Hardened Containers:23: perl, BellSoft Hardened Containers:25: perl, BellSoft Hardened Containers:stream: perl&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-48959</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0731 — De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731</link>
      <description>certfr-2026-avi-0731</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731</guid>
    </item>
    <item>
      <title>EUVD-2026-322850</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322850</link>
      <description>EUVD-2026-322850</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322850</guid>
    </item>
    <item>
      <title>fkie_cve-2026-48959</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-48959</link>
      <description>&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward.&lt;/p&gt;
&lt;p&gt;fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration.&lt;/p&gt;
&lt;p&gt;Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward.&lt;/p&gt;
&lt;p&gt;fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration.&lt;/p&gt;
&lt;p&gt;Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-48959</guid>
    </item>
    <item>
      <title>GHSA-7vxx-5gqr-7r44</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-7vxx-5gqr-7r44</link>
      <description>&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward.&lt;/p&gt;
&lt;p&gt;fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration.&lt;/p&gt;
&lt;p&gt;Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward.&lt;/p&gt;
&lt;p&gt;fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration.&lt;/p&gt;
&lt;p&gt;Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-7vxx-5gqr-7r44</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-48959 — IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-48959</link>
      <description>msrc_CVE-2026-48959</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-48959</guid>
    </item>
    <item>
      <title>NCSC-2026-0321 — Meerdere kwetsbaarheden verholpen in IBM AIX en IBM PowerVM VIOS</title>
      <link>https://cve.radiocsirt.org/vuln/ncsc-2026-0321</link>
      <description>NCSC-2026-0321</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ncsc-2026-0321</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-48959</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-48959</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: perl, Ubuntu:Pro:16.04:LTS: perl, Ubuntu:16.04:LTS: libio-compress-perl, Ubuntu:Pro:18.04:LTS: perl, Ubuntu:18.04:LTS: libio-compress-perl, Ubuntu:Pro:20.04:LTS: perl, Ubuntu:20.04:LTS: libio-compress-perl, Ubuntu:22.04:LTS: libio-compress-perl, Ubuntu:22.04:LTS: perl, Ubuntu:24.04:LTS: libio-compress-perl and 5 more&lt;/p&gt;
&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration. Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: perl, Ubuntu:Pro:16.04:LTS: perl, Ubuntu:16.04:LTS: libio-compress-perl, Ubuntu:Pro:18.04:LTS: perl, Ubuntu:18.04:LTS: libio-compress-perl, Ubuntu:Pro:20.04:LTS: perl, Ubuntu:20.04:LTS: libio-compress-perl, Ubuntu:22.04:LTS: libio-compress-perl, Ubuntu:22.04:LTS: perl, Ubuntu:24.04:LTS: libio-compress-perl and 5 more&lt;/p&gt;
&lt;p&gt;IO::Uncompress::Unzip versions before 2.220 for Perl allow CPU exhaustion via per-byte read loop in fastForward. fastForward() compares length $offset (the digit count of the offset, 1 to 19) against the chunk size $c instead of $offset itself, so $c shrinks from 16 KiB to 1-19 bytes per iteration. Extracting a named entry from an attacker supplied zip via IO::Uncompress::Unzip-&amp;gt;new($zip, Name =&amp;gt; $target) drives a per-byte read loop scaling with the entry&amp;#39;s compressed size, up to the non-Zip64 4 GiB cap.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-48959</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2858 — IBM AIX und VIOS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2858</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM AIX und IBM VIOS ausnutzen, um beliebigen Programmcode auszuführen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in IBM AIX und IBM VIOS ausnutzen, um beliebigen Programmcode auszuführen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2858</guid>
    </item>
  </channel>
</rss>
