<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 13:09:20 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-01454</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-01454</link>
      <description>bdu:2021-01454</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-01454</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2018-1302 — CVE-2018-1302 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2018-1302</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2018-1302</guid>
    </item>
    <item>
      <title>certfr-2019-avi-657 — De multiples vulnérabilités ont été découvertes dans Tenable.sc de
Tenable. Certaines d'entre elles permettent à un att…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2019-avi-657</link>
      <description>certfr-2019-avi-657</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2019-avi-657</guid>
    </item>
    <item>
      <title>cnvd-2018-06535</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2018-06535</link>
      <description>cnvd-2018-06535</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2018-06535</guid>
    </item>
    <item>
      <title>EUVD-2026-182383</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-182383</link>
      <description>EUVD-2026-182383</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-182383</guid>
    </item>
    <item>
      <title>fkie_cve-2018-1302</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-1302</link>
      <description>&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-1302</guid>
    </item>
    <item>
      <title>GHSA-x452-9h59-82pg</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-x452-9h59-82pg</link>
      <description>&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-x452-9h59-82pg</guid>
    </item>
    <item>
      <title>gsd-2018-1302</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-1302</link>
      <description>gsd-2018-1302</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-1302</guid>
    </item>
    <item>
      <title>RHSA-2019:0366 — Red Hat Security Advisory: Red Hat JBoss Core Services Apache HTTP Server 2.4.29 SP1 security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2019:0366</link>
      <description>&lt;p&gt;libdb: Reads DB_CONFIG from the current working directory httpd: Out of bounds write in mod_authnz_ldap when using too small Accept-Language values httpd: &amp;lt;FilesMatch&amp;gt; bypass with a trailing newline in the file name openssl: Handling of crafted recursive ASN.1 structures can cause a stack overflow and resulting denial of service httpd: Improper handling of headers in mod_session can allow a remote user to modify session data for CGI applications httpd: Out of bounds access after failure in reading the HTTP request httpd: Use-after-free on HTTP/2 stream shutdown httpd: Out of bounds read in mod_cache_socache can allow a remote attacker to cause DoS httpd: Weak Digest auth nonce generation in mod_auth_digest httpd: mod_http2: Too much time allocated to workers, possibly leading to DoS mod_jk: connector path traversal due to mishandled HTTP requests in httpd httpd: DoS for HTTP/2 connections by continuous SETTINGS frames nghttp2: Null pointer dereference when too large ALTSVC frame is received&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libdb: Reads DB_CONFIG from the current working directory httpd: Out of bounds write in mod_authnz_ldap when using too small Accept-Language values httpd: &amp;lt;FilesMatch&amp;gt; bypass with a trailing newline in the file name openssl: Handling of crafted recursive ASN.1 structures can cause a stack overflow and resulting denial of service httpd: Improper handling of headers in mod_session can allow a remote user to modify session data for CGI applications httpd: Out of bounds access after failure in reading the HTTP request httpd: Use-after-free on HTTP/2 stream shutdown httpd: Out of bounds read in mod_cache_socache can allow a remote attacker to cause DoS httpd: Weak Digest auth nonce generation in mod_auth_digest httpd: mod_http2: Too much time allocated to workers, possibly leading to DoS mod_jk: connector path traversal due to mishandled HTTP requests in httpd httpd: DoS for HTTP/2 connections by continuous SETTINGS frames nghttp2: Null pointer dereference when too large ALTSVC frame is received&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2019:0366</guid>
    </item>
    <item>
      <title>SUSE-SU-2018:1161-1 — Security update for apache2</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2018:1161-1</link>
      <description>&lt;p&gt;Security update for apache2&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for apache2&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2018:1161-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2018-1302</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1302</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: apache2&lt;/p&gt;
&lt;p&gt;When an HTTP/2 stream was destroyed after being handled, the Apache HTTP Server prior to version 2.4.30 could have written a NULL pointer potentially to an already freed memory. The memory pools maintained by the server make this vulnerability hard to trigger in usual configurations, the reporter and the team could not reproduce it outside debug builds, so it is classified as low risk.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2018-1302</guid>
    </item>
  </channel>
</rss>
