<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 20:13:56 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:47104 — Important: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:47104</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: firefox, AlmaLinux:9: firefox-x11&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode (CVE-2026-56208)
  * firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719)
  * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718)
  * firefox: thunderbird: Mitigation bypass in the Enterprise Policies component (CVE-2026-16390)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: cubeb component (CVE-2026-16350)
  * firefox: thunderbird: Information disclosure in the Storage: IndexedDB component (CVE-2026-16391)
  * firefox: thunderbird: Site isolation issue in the Networking: HTTP component (CVE-2026-16375)
  * firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-16356)
  * firefox: thunderbird: JIT miscompilation in the JavaScript: WebAssembly component (CVE-2026-16363)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 (CVE-2026-16412)
  * firefox: thunderbird: Same-origin policy bypass in the Networking: DNS component (CVE-2026-16381)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-16355)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 (CVE-2026-16361)
  *…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: firefox, AlmaLinux:9: firefox-x11&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode (CVE-2026-56208)
  * firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719)
  * firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718)
  * firefox: thunderbird: Mitigation bypass in the Enterprise Policies component (CVE-2026-16390)
  * firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: cubeb component (CVE-2026-16350)
  * firefox: thunderbird: Information disclosure in the Storage: IndexedDB component (CVE-2026-16391)
  * firefox: thunderbird: Site isolation issue in the Networking: HTTP component (CVE-2026-16375)
  * firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-16356)
  * firefox: thunderbird: JIT miscompilation in the JavaScript: WebAssembly component (CVE-2026-16363)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 (CVE-2026-16412)
  * firefox: thunderbird: Same-origin policy bypass in the Networking: DNS component (CVE-2026-16381)
  * firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-16355)
  * firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 (CVE-2026-16361)
  *…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:47104</guid>
    </item>
    <item>
      <title>EUVD-2026-382017</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-382017</link>
      <description>EUVD-2026-382017</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-382017</guid>
    </item>
    <item>
      <title>fkie_cve-2026-56208</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-56208</link>
      <description>&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-56208</guid>
    </item>
    <item>
      <title>GHSA-mgv2-4j37-m3x6</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mgv2-4j37-m3x6</link>
      <description>&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mgv2-4j37-m3x6</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:21061-1 — Security update for libaom</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21061-1</link>
      <description>&lt;p&gt;Security update for libaom&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libaom&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:21061-1</guid>
    </item>
    <item>
      <title>RHSA-2026:30814 — Red Hat Security Advisory: Red Hat Hardened Images RPMs Security Update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:30814</link>
      <description>&lt;p&gt;libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode libaom: libaom: arbitrary address write via SVC layer context OOB and cyclic refresh map pointer hijack libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_set_layer_id libaom: libaom: remote code execution via SVC layer context handling with attacker-controlled frames&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode libaom: libaom: arbitrary address write via SVC layer context OOB and cyclic refresh map pointer hijack libaom: libaom: heap-buffer-overflow read via missing bounds check in ctrl_set_layer_id libaom: libaom: remote code execution via SVC layer context handling with attacker-controlled frames&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:30814</guid>
    </item>
    <item>
      <title>RLSA-2026:47104 — Important: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:47104</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:9: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode (CVE-2026-56208)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Mitigation bypass in the Enterprise Policies component (CVE-2026-16390)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: cubeb component (CVE-2026-16350)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Information disclosure in the Storage: IndexedDB component (CVE-2026-16391)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Site isolation issue in the Networking: HTTP component (CVE-2026-16375)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-16356)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: JIT miscompilation in the JavaScript: WebAssembly component (CVE-2026-16363)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 (CVE-2026-16412)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Same-origin policy bypass in the Networking: DNS component (CVE-2026-16381)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-16355)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 (CVE-2026-16361)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbi…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:9: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libaom: libaom: heap buffer overflow in AV1 encoder first-pass stats buffer via LAP mode (CVE-2026-56208)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Site isolation issue in the DOM: Navigation component (CVE-2026-15719)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Invalid pointer in the JavaScript: WebAssembly component (CVE-2026-15718)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Mitigation bypass in the Enterprise Policies component (CVE-2026-16390)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Incorrect boundary conditions in the Audio/Video: cubeb component (CVE-2026-16350)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Information disclosure in the Storage: IndexedDB component (CVE-2026-16391)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Site isolation issue in the Networking: HTTP component (CVE-2026-16375)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Sandbox escape due to use-after-free in the Disability Access APIs component (CVE-2026-16356)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: JIT miscompilation in the JavaScript: WebAssembly component (CVE-2026-16363)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 (CVE-2026-16412)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Same-origin policy bypass in the Networking: DNS component (CVE-2026-16381)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: JIT miscompilation in the JavaScript Engine: JIT component (CVE-2026-16355)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 (CVE-2026-16361)&lt;/p&gt;
&lt;p&gt;* firefox: thunderbi…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:47104</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22369-1 — Security update for libaom</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22369-1</link>
      <description>&lt;p&gt;Security update for libaom&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libaom&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22369-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-56208</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-56208</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: aom, Ubuntu:24.04:LTS: aom, Ubuntu:25.10: aom, Ubuntu:26.04:LTS: aom&lt;/p&gt;
&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: aom, Ubuntu:24.04:LTS: aom, Ubuntu:25.10: aom, Ubuntu:26.04:LTS: aom&lt;/p&gt;
&lt;p&gt;A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder&amp;#39;s Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds write on every encoded frame after the second, corrupting adjacent heap objects. An attacker who can influence encoder configuration in a transcoding service or WebRTC session could exploit this to cause a denial of service (process crash) or potentially achieve code execution.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-56208</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2693 — Red Hat Enterprise Linux AI (libaom): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2693</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux AI ausnutzen, um beliebigen Programmcode auszuführen, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux AI ausnutzen, um beliebigen Programmcode auszuführen, vertrauliche Informationen offenzulegen oder einen Denial-of-Service-Zustand auszulösen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2693</guid>
    </item>
  </channel>
</rss>
