<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:13:16 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-339044</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-339044</link>
      <description>EUVD-2026-339044</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-339044</guid>
    </item>
    <item>
      <title>fkie_cve-2026-50185</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-50185</link>
      <description>&lt;p&gt;RustCrypto CMOV provides conditional move CPU intrinsics which are guaranteed on major platforms to execute in constant-time and not be rewritten as branches by the compiler. From 0.1.1 until 0.5.4, the aarch64 implementations of Cmov and CmovEq in cmov/src/backends/aarch64.rs assume high bits are zero-extended when loading values smaller than a register, so set high bits such as [8..] in a Cmov selector or [16..] of self or other in the u16 and i16 CmovEq implementations can cause left.cmovz(&amp;amp;right, condition) to produce incorrect output. This issue is fixed in version 0.5.4.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;RustCrypto CMOV provides conditional move CPU intrinsics which are guaranteed on major platforms to execute in constant-time and not be rewritten as branches by the compiler. From 0.1.1 until 0.5.4, the aarch64 implementations of Cmov and CmovEq in cmov/src/backends/aarch64.rs assume high bits are zero-extended when loading values smaller than a register, so set high bits such as [8..] in a Cmov selector or [16..] of self or other in the u16 and i16 CmovEq implementations can cause left.cmovz(&amp;amp;right, condition) to produce incorrect output. This issue is fixed in version 0.5.4.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-50185</guid>
    </item>
    <item>
      <title>GHSA-3rjw-m598-pq24 — Cmov/CmovEq on aarch64 can produce wrong results if high-bits of registers are set</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3rjw-m598-pq24</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; crates.io: cmov&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;The aarch64 implementations of `Cmov` and `CmovEq` seem to assume that the high bits when loading a value of size smaller than a register into a register are zero-extended. However, this is not the case and these bits are unspecified. This can result in a `left.cmovz(&amp;amp;right, condition)` not moving `right` into `left`, even if `condition == 0`.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;The Rust reference for inline assembly states that:
&amp;gt; If a value is of a smaller size than the register it is allocated in then the upper bits of that register will have an undefined value for inputs [..]. [Reference](https://doc.rust-lang.org/reference/inline-assembly.html#r-asm.register-operands.smaller-value)&lt;/p&gt;
&lt;p&gt;If the high bits `[8..]` of the selector loaded into a register in the `Cmov` implementation or the high bits `[16..]` of `self` or `other` for CmovEq (specifically the implementation for `u16` and `i16`) are set, the inline asm compares will produce a different result than the Rust code expects based on the narrow types.&lt;/p&gt;
&lt;p&gt;In other words, the following assert fails, even though `condition as u8` is zero:
```rust
let condition: u32 = black_box(1 &amp;lt;&amp;lt; 8);
let mut left = 1;
let right = 2;
left.cmovz(&amp;amp;right, condition as u8);
assert_eq!(left, right);
```
Because the ninth bit is set in the original variable, this bit is also set when the truncated condition is loaded into the input register for the `cmp`, causing the `csel` to select the wrong value.&lt;/p&gt;
&lt;p&gt;The problematic code is located in `cmov/src/backends/…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; crates.io: cmov&lt;/p&gt;
&lt;p&gt;### Summary&lt;/p&gt;
&lt;p&gt;The aarch64 implementations of `Cmov` and `CmovEq` seem to assume that the high bits when loading a value of size smaller than a register into a register are zero-extended. However, this is not the case and these bits are unspecified. This can result in a `left.cmovz(&amp;amp;right, condition)` not moving `right` into `left`, even if `condition == 0`.&lt;/p&gt;
&lt;p&gt;### Details&lt;/p&gt;
&lt;p&gt;The Rust reference for inline assembly states that:
&amp;gt; If a value is of a smaller size than the register it is allocated in then the upper bits of that register will have an undefined value for inputs [..]. [Reference](https://doc.rust-lang.org/reference/inline-assembly.html#r-asm.register-operands.smaller-value)&lt;/p&gt;
&lt;p&gt;If the high bits `[8..]` of the selector loaded into a register in the `Cmov` implementation or the high bits `[16..]` of `self` or `other` for CmovEq (specifically the implementation for `u16` and `i16`) are set, the inline asm compares will produce a different result than the Rust code expects based on the narrow types.&lt;/p&gt;
&lt;p&gt;In other words, the following assert fails, even though `condition as u8` is zero:
```rust
let condition: u32 = black_box(1 &amp;lt;&amp;lt; 8);
let mut left = 1;
let right = 2;
left.cmovz(&amp;amp;right, condition as u8);
assert_eq!(left, right);
```
Because the ninth bit is set in the original variable, this bit is also set when the truncated condition is loaded into the input register for the `cmp`, causing the `csel` to select the wrong value.&lt;/p&gt;
&lt;p&gt;The problematic code is located in `cmov/src/backends/…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3rjw-m598-pq24</guid>
    </item>
    <item>
      <title>RHSA-2026:42923 — Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:42923</link>
      <description>&lt;p&gt;cargo: Cargo: Source code overwrite due to symlink mishandling in third-party registries cmov: cmov: Incorrect output due to improper zero-extension in aarch64 conditional move operations&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cargo: Cargo: Source code overwrite due to symlink mishandling in third-party registries cmov: cmov: Incorrect output due to improper zero-extension in aarch64 conditional move operations&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:42923</guid>
    </item>
  </channel>
</rss>
