<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 15:58:14 +0000</lastBuildDate>
    <item>
      <title>bdu:2017-02150</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2017-02150</link>
      <description>bdu:2017-02150</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2017-02150</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2017-7668 — CVE-2017-7668 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2017-7668</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2017-7668</guid>
    </item>
    <item>
      <title>certfr-2017-avi-218 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apache&lt;/span&gt;. Elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2017-avi-218</link>
      <description>certfr-2017-avi-218</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2017-avi-218</guid>
    </item>
    <item>
      <title>cnvd-2017-11803</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-11803</link>
      <description>cnvd-2017-11803</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-11803</guid>
    </item>
    <item>
      <title>EUVD-2026-74886</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-74886</link>
      <description>EUVD-2026-74886</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-74886</guid>
    </item>
    <item>
      <title>fkie_cve-2017-7668</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-7668</link>
      <description>&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-7668</guid>
    </item>
    <item>
      <title>GHSA-mcc7-rcr3-2rgr</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-mcc7-rcr3-2rgr</link>
      <description>&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-mcc7-rcr3-2rgr</guid>
    </item>
    <item>
      <title>gsd-2017-7668</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-7668</link>
      <description>gsd-2017-7668</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-7668</guid>
    </item>
    <item>
      <title>RHSA-2017:2479 — Red Hat Security Advisory: httpd security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:2479</link>
      <description>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:2479</guid>
    </item>
    <item>
      <title>RHSA-2017:2483 — Red Hat Security Advisory: httpd24-httpd security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2017:2483</link>
      <description>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: mod_http2 NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;httpd: ap_get_basic_auth_pw() authentication bypass httpd: mod_ssl NULL pointer dereference httpd: mod_http2 NULL pointer dereference httpd: ap_find_token() buffer overread httpd: mod_mime buffer overread httpd: Uninitialized memory reflection in mod_auth_digest&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2017:2483</guid>
    </item>
    <item>
      <title>SUSE-SU-2017:2907-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2017:2907-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2017:2907-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2017-7668</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7668</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2, Ubuntu:16.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: apache2, Ubuntu:16.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;The HTTP strict parsing changes added in Apache httpd 2.2.32 and 2.4.24 introduced a bug in token list parsing, which allows ap_find_token() to search past the end of its input string. By maliciously crafting a sequence of request headers, an attacker may be able to cause a segmentation fault, or to force ap_find_token() to return an incorrect value.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2017-7668</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-0370 — Apple Mac OS: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0370</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstelle in Apple Mac OS ausnutzen, um Code mit Kernel Privilegien auszuführen, Sicherheitsvorkehrungen zu umgehen, einen Denial of Service Angriff durchzuführen oder vertrauliche Daten einzusehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstelle in Apple Mac OS ausnutzen, um Code mit Kernel Privilegien auszuführen, Sicherheitsvorkehrungen zu umgehen, einen Denial of Service Angriff durchzuführen oder vertrauliche Daten einzusehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-0370</guid>
    </item>
  </channel>
</rss>
