<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 20:06:22 +0000</lastBuildDate>
    <item>
      <title>BELL-CVE-2026-68090</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-68090</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: linux-lts, Alpaquita:25: linux-lts, Alpaquita:stream: linux-lts&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-68090</guid>
    </item>
    <item>
      <title>certfr-2026-avi-1162 — De multiples vulnérabilités ont été découvertes dans le noyau Linux d'Ubuntu. Certaines d'entre elles permettent à un a…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-1162</link>
      <description>certfr-2026-avi-1162</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-1162</guid>
    </item>
    <item>
      <title>EUVD-2026-353462</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-353462</link>
      <description>EUVD-2026-353462</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-353462</guid>
    </item>
    <item>
      <title>fkie_cve-2026-68090</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-68090</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;debugobjects: Plug race against a concurrent OOM disable&lt;/p&gt;
&lt;p&gt;syzbot reported a puzzling splat:&lt;/p&gt;
&lt;p&gt;WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20&lt;/p&gt;
&lt;p&gt;stub_timer() is installed as timer callback function in
hrtimer_fixup_assert_init(), which is invoked when
debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug
objects emits a warning about it before invoking the fixup.&lt;/p&gt;
&lt;p&gt;Though the provided console log lacks this warning and instead has the
following a few seconds before the splat:&lt;/p&gt;
&lt;p&gt;ODEBUG: Out of memory. ODEBUG disabled&lt;/p&gt;
&lt;p&gt;So the object was looked up in debug_object_assert_init() and the lookup
failed due a concurrent out of memory situation which disabled debug
objects and freed the shadow objects:&lt;/p&gt;
&lt;p&gt;debug_object_assert_init()
        if (!debug_objects_enabled)
        	return;                         obj = alloc();
                				if (!obj) {
							// Out of memory
                                                	debug_objects_enabled = false;
                                                        free_objects();
        obj = lookup_or_alloc();&lt;/p&gt;
&lt;p&gt;// The lookup failed because the other side
        // removed the objects, so this returns
        // an error code as the object in question
        // is not statically initialized&lt;/p&gt;
&lt;p&gt;if (!IS_ERR_OR_NULL(obj))
        	return;
        if (!obj) {
        	debug_oom();
                return;
        }&lt;/p&gt;
&lt;p&gt;print(...)…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;debugobjects: Plug race against a concurrent OOM disable&lt;/p&gt;
&lt;p&gt;syzbot reported a puzzling splat:&lt;/p&gt;
&lt;p&gt;WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20&lt;/p&gt;
&lt;p&gt;stub_timer() is installed as timer callback function in
hrtimer_fixup_assert_init(), which is invoked when
debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug
objects emits a warning about it before invoking the fixup.&lt;/p&gt;
&lt;p&gt;Though the provided console log lacks this warning and instead has the
following a few seconds before the splat:&lt;/p&gt;
&lt;p&gt;ODEBUG: Out of memory. ODEBUG disabled&lt;/p&gt;
&lt;p&gt;So the object was looked up in debug_object_assert_init() and the lookup
failed due a concurrent out of memory situation which disabled debug
objects and freed the shadow objects:&lt;/p&gt;
&lt;p&gt;debug_object_assert_init()
        if (!debug_objects_enabled)
        	return;                         obj = alloc();
                				if (!obj) {
							// Out of memory
                                                	debug_objects_enabled = false;
                                                        free_objects();
        obj = lookup_or_alloc();&lt;/p&gt;
&lt;p&gt;// The lookup failed because the other side
        // removed the objects, so this returns
        // an error code as the object in question
        // is not statically initialized&lt;/p&gt;
&lt;p&gt;if (!IS_ERR_OR_NULL(obj))
        	return;
        if (!obj) {
        	debug_oom();
                return;
        }&lt;/p&gt;
&lt;p&gt;print(...)…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-68090</guid>
    </item>
    <item>
      <title>GHSA-qrrw-365j-cfxh</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qrrw-365j-cfxh</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;debugobjects: Plug race against a concurrent OOM disable&lt;/p&gt;
&lt;p&gt;syzbot reported a puzzling splat:&lt;/p&gt;
&lt;p&gt;WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20&lt;/p&gt;
&lt;p&gt;stub_timer() is installed as timer callback function in
hrtimer_fixup_assert_init(), which is invoked when
debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug
objects emits a warning about it before invoking the fixup.&lt;/p&gt;
&lt;p&gt;Though the provided console log lacks this warning and instead has the
following a few seconds before the splat:&lt;/p&gt;
&lt;p&gt;ODEBUG: Out of memory. ODEBUG disabled&lt;/p&gt;
&lt;p&gt;So the object was looked up in debug_object_assert_init() and the lookup
failed due a concurrent out of memory situation which disabled debug
objects and freed the shadow objects:&lt;/p&gt;
&lt;p&gt;debug_object_assert_init()
        if (!debug_objects_enabled)
        	return;                         obj = alloc();
                				if (!obj) {
							// Out of memory
                                                	debug_objects_enabled = false;
                                                        free_objects();
        obj = lookup_or_alloc();&lt;/p&gt;
&lt;p&gt;// The lookup failed because the other side
        // removed the objects, so this returns
        // an error code as the object in question
        // is not statically initialized&lt;/p&gt;
&lt;p&gt;if (!IS_ERR_OR_NULL(obj))
        	return;
        if (!obj) {
        	debug_oom();
                return;
        }&lt;/p&gt;
&lt;p&gt;print(...)…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;debugobjects: Plug race against a concurrent OOM disable&lt;/p&gt;
&lt;p&gt;syzbot reported a puzzling splat:&lt;/p&gt;
&lt;p&gt;WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20&lt;/p&gt;
&lt;p&gt;stub_timer() is installed as timer callback function in
hrtimer_fixup_assert_init(), which is invoked when
debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug
objects emits a warning about it before invoking the fixup.&lt;/p&gt;
&lt;p&gt;Though the provided console log lacks this warning and instead has the
following a few seconds before the splat:&lt;/p&gt;
&lt;p&gt;ODEBUG: Out of memory. ODEBUG disabled&lt;/p&gt;
&lt;p&gt;So the object was looked up in debug_object_assert_init() and the lookup
failed due a concurrent out of memory situation which disabled debug
objects and freed the shadow objects:&lt;/p&gt;
&lt;p&gt;debug_object_assert_init()
        if (!debug_objects_enabled)
        	return;                         obj = alloc();
                				if (!obj) {
							// Out of memory
                                                	debug_objects_enabled = false;
                                                        free_objects();
        obj = lookup_or_alloc();&lt;/p&gt;
&lt;p&gt;// The lookup failed because the other side
        // removed the objects, so this returns
        // an error code as the object in question
        // is not statically initialized&lt;/p&gt;
&lt;p&gt;if (!IS_ERR_OR_NULL(obj))
        	return;
        if (!obj) {
        	debug_oom();
                return;
        }&lt;/p&gt;
&lt;p&gt;print(...)…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qrrw-365j-cfxh</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-68090 — debugobjects: Plug race against a concurrent OOM disable</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-68090</link>
      <description>msrc_CVE-2026-68090</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-68090</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-68090</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-68090</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 246 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: debugobjects: Plug race against a concurrent OOM disable syzbot reported a puzzling splat:    WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20 stub_timer() is installed as timer callback function in hrtimer_fixup_assert_init(), which is invoked when debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug objects emits a warning about it before invoking the fixup. Though the provided console log lacks this warning and instead has the following a few seconds before the splat:      ODEBUG: Out of memory. ODEBUG disabled So the object was looked up in debug_object_assert_init() and the lookup failed due a concurrent out of memory situation which disabled debug objects and freed the shadow objects: debug_object_assert_init()         if (!debug_objects_enabled)         	return;                         obj = alloc();                 				if (!obj) { 							// Out of memory                                                 	debug_objects_enabled = false;                                                         free_objects();         obj = lookup_or_alloc();         // The lookup failed because the other side         // removed the objects, so this returns         // an error code as the object in question         // is not statically initialized 	if (!IS_ERR_OR_NULL(obj))         	return;         if (!obj) {         	debug_oom();                 return;         }         print(...)…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:Pro:16.04:LTS: linux, Ubuntu:Pro:16.04:LTS: linux-aws, Ubuntu:Pro:16.04:LTS: linux-aws-hwe, Ubuntu:Pro:16.04:LTS: linux-azure, Ubuntu:Pro:16.04:LTS: linux-gcp, Ubuntu:Pro:16.04:LTS: linux-hwe and 246 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: debugobjects: Plug race against a concurrent OOM disable syzbot reported a puzzling splat:    WARNING: kernel/time/hrtimer.c:443 at stub_timer+0xa/0x20 stub_timer() is installed as timer callback function in hrtimer_fixup_assert_init(), which is invoked when debug_object_assert_init() can&amp;#39;t find a shadow object. In that case debug objects emits a warning about it before invoking the fixup. Though the provided console log lacks this warning and instead has the following a few seconds before the splat:      ODEBUG: Out of memory. ODEBUG disabled So the object was looked up in debug_object_assert_init() and the lookup failed due a concurrent out of memory situation which disabled debug objects and freed the shadow objects: debug_object_assert_init()         if (!debug_objects_enabled)         	return;                         obj = alloc();                 				if (!obj) { 							// Out of memory                                                 	debug_objects_enabled = false;                                                         free_objects();         obj = lookup_or_alloc();         // The lookup failed because the other side         // removed the objects, so this returns         // an error code as the object in question         // is not statically initialized 	if (!IS_ERR_OR_NULL(obj))         	return;         if (!obj) {         	debug_oom();                 return;         }         print(...)…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-68090</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2730 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2730</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, darunter möglicherweise die Ausführung von beliebigem Code, die Ausweitung von Berechtigungen, die Offenlegung von Informationen, die Manipulation von Daten oder Denial-of-Service-Zustände.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen im Linux Kernel ausnutzen, um einen nicht näher spezifizierten Angriff durchzuführen, darunter möglicherweise die Ausführung von beliebigem Code, die Ausweitung von Berechtigungen, die Offenlegung von Informationen, die Manipulation von Daten oder Denial-of-Service-Zustände.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2730</guid>
    </item>
  </channel>
</rss>
