<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 08:38:18 +0000</lastBuildDate>
    <item>
      <title>Withdrawn: BELL-CVE-2026-72285 — CVE-2026-72285 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2026-72285</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2026-72285</guid>
    </item>
    <item>
      <title>EUVD-2026-354002</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-354002</link>
      <description>EUVD-2026-354002</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-354002</guid>
    </item>
    <item>
      <title>fkie_cve-2026-72285</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-72285</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;KVM: TDX: Reject concurrent change to CPUID entry count&lt;/p&gt;
&lt;p&gt;Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the
initial read and the subsequent copy of the initialization data.&lt;/p&gt;
&lt;p&gt;tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible
kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent,
and that field can differ from the value used to size the allocation if
userspace modifies the input concurrently.  setup_tdparams_cpuids() later
passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as
the array bound for the copied entries.&lt;/p&gt;
&lt;p&gt;Require the copied count to match the value used to size the allocation
so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;KVM: TDX: Reject concurrent change to CPUID entry count&lt;/p&gt;
&lt;p&gt;Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the
initial read and the subsequent copy of the initialization data.&lt;/p&gt;
&lt;p&gt;tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible
kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent,
and that field can differ from the value used to size the allocation if
userspace modifies the input concurrently.  setup_tdparams_cpuids() later
passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as
the array bound for the copied entries.&lt;/p&gt;
&lt;p&gt;Require the copied count to match the value used to size the allocation
so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-72285</guid>
    </item>
    <item>
      <title>GHSA-725c-hm4j-27fv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-725c-hm4j-27fv</link>
      <description>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;KVM: TDX: Reject concurrent change to CPUID entry count&lt;/p&gt;
&lt;p&gt;Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the
initial read and the subsequent copy of the initialization data.&lt;/p&gt;
&lt;p&gt;tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible
kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent,
and that field can differ from the value used to size the allocation if
userspace modifies the input concurrently.  setup_tdparams_cpuids() later
passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as
the array bound for the copied entries.&lt;/p&gt;
&lt;p&gt;Require the copied count to match the value used to size the allocation
so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved:&lt;/p&gt;
&lt;p&gt;KVM: TDX: Reject concurrent change to CPUID entry count&lt;/p&gt;
&lt;p&gt;Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the
initial read and the subsequent copy of the initialization data.&lt;/p&gt;
&lt;p&gt;tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible
kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent,
and that field can differ from the value used to size the allocation if
userspace modifies the input concurrently.  setup_tdparams_cpuids() later
passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as
the array bound for the copied entries.&lt;/p&gt;
&lt;p&gt;Require the copied count to match the value used to size the allocation
so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-725c-hm4j-27fv</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-72285</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-72285</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 115 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: KVM: TDX: Reject concurrent change to CPUID entry count Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the initial read and the subsequent copy of the initialization data. tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent, and that field can differ from the value used to size the allocation if userspace modifies the input concurrently.  setup_tdparams_cpuids() later passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as the array bound for the copied entries. Require the copied count to match the value used to size the allocation so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: linux-hwe-edge, Ubuntu:18.04:LTS: linux-aws-5.0, Ubuntu:18.04:LTS: linux-aws-5.3, Ubuntu:18.04:LTS: linux-azure, Ubuntu:18.04:LTS: linux-azure-5.3, Ubuntu:18.04:LTS: linux-azure-edge, Ubuntu:18.04:LTS: linux-gcp, Ubuntu:18.04:LTS: linux-gcp-5.3, Ubuntu:18.04:LTS: linux-gke-4.15, Ubuntu:18.04:LTS: linux-gke-5.4 and 115 more&lt;/p&gt;
&lt;p&gt;In the Linux kernel, the following vulnerability has been resolved: KVM: TDX: Reject concurrent change to CPUID entry count Reject KVM_TDX_INIT_VM if userspace changes cpuid.nent between the initial read and the subsequent copy of the initialization data. tdx_td_init() first reads user_data-&amp;gt;cpuid.nent to size the flexible kvm_tdx_init_vm copy.  The copied structure also contains cpuid.nent, and that field can differ from the value used to size the allocation if userspace modifies the input concurrently.  setup_tdparams_cpuids() later passes init_vm-&amp;gt;cpuid.nent to kvm_find_cpuid_entry2(), which uses it as the array bound for the copied entries. Require the copied count to match the value used to size the allocation so that CPUID parsing cannot access beyond the entries actually copied.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-72285</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2852 — Linux Kernel: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2852</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um root Rechte zu erlangen, um einen Denial of Service herbeizuführen oder einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Linux Kernel ausnutzen, um root Rechte zu erlangen, um einen Denial of Service herbeizuführen oder einen nicht näher spezifizierten Angriff durchzuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2852</guid>
    </item>
  </channel>
</rss>
