<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 05:31:55 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-379680</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-379680</link>
      <description>EUVD-2026-379680</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-379680</guid>
    </item>
    <item>
      <title>fkie_cve-2026-71974</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-71974</link>
      <description>&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-71974</guid>
    </item>
    <item>
      <title>GHSA-c7vr-vjm2-3grc</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-c7vr-vjm2-3grc</link>
      <description>&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-c7vr-vjm2-3grc</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-71974</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71974</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: u-boot, Ubuntu:18.04:LTS: u-boot, Ubuntu:20.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot-nezha, Ubuntu:24.04:LTS: u-boot, Ubuntu:24.04:LTS: u-boot-nezha, Ubuntu:26.04:LTS: u-boot&lt;/p&gt;
&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: u-boot, Ubuntu:18.04:LTS: u-boot, Ubuntu:20.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot, Ubuntu:22.04:LTS: u-boot-nezha, Ubuntu:24.04:LTS: u-boot, Ubuntu:24.04:LTS: u-boot-nezha, Ubuntu:26.04:LTS: u-boot&lt;/p&gt;
&lt;p&gt;U-Boot before 2026.10-rc3 contains an out-of-bounds write vulnerability in read_slotted_partition() that fails to validate image size against partition bounds. Attackers with physical access can supply crafted boot media with oversized headers to write past the load buffer into bootloader memory on devices without Android Verified Boot protection.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-71974</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-3660 — DENX U-Boot: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3660</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in DENX U-Boot ausnutzen, um den Speicher zu beschädigen, Denial-of-Service-Zustände herbeizuführen oder andere, nicht näher spezifizierte Angriffe zu starten.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in DENX U-Boot ausnutzen, um den Speicher zu beschädigen, Denial-of-Service-Zustände herbeizuführen oder andere, nicht näher spezifizierte Angriffe zu starten.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-3660</guid>
    </item>
  </channel>
</rss>
