<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 11:04:41 +0000</lastBuildDate>
    <item>
      <title>ALSA-2020:0279 — Moderate: virt:rhel security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2020:0279</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: netcf, AlmaLinux:8: netcf-devel, AlmaLinux:8: netcf-libs, AlmaLinux:8: sgabios, AlmaLinux:8: sgabios-bin&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libiscsi, AlmaLinux:8: libiscsi-devel, AlmaLinux:8: libiscsi-utils, AlmaLinux:8: netcf, AlmaLinux:8: netcf-devel, AlmaLinux:8: netcf-libs, AlmaLinux:8: sgabios, AlmaLinux:8: sgabios-bin&lt;/p&gt;
&lt;p&gt;Kernel-based Virtual Machine (KVM) offers a full virtualization solution for Linux on numerous hardware platforms. The virt:rhel module contains packages which provide user-space components used to run virtual machines using KVM. The packages also provide APIs for managing and interacting with the virtualized systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* hw: TSX Transaction Asynchronous Abort (TAA) (CVE-2019-11135)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2020:0279</guid>
    </item>
    <item>
      <title>bdu:2020-00130</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2020-00130</link>
      <description>bdu:2020-00130</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2020-00130</guid>
    </item>
    <item>
      <title>Withdrawn: BELL-CVE-2019-11135 — CVE-2019-11135 does not affect BellSoft software</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2019-11135</link>
      <description>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Withdrawn by the publisher.&lt;/strong&gt;&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2019-11135</guid>
    </item>
    <item>
      <title>certfr-2019-avi-554 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de
Red Hat. Elles permettent à un attaquant de prov…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2019-avi-554</link>
      <description>certfr-2019-avi-554</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2019-avi-554</guid>
    </item>
    <item>
      <title>cnvd-2019-47000</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2019-47000</link>
      <description>cnvd-2019-47000</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2019-47000</guid>
    </item>
    <item>
      <title>EUVD-2026-322557</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-322557</link>
      <description>EUVD-2026-322557</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-322557</guid>
    </item>
    <item>
      <title>fkie_cve-2019-11135</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2019-11135</link>
      <description>&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2019-11135</guid>
    </item>
    <item>
      <title>GHSA-qfxp-65r3-gfv7</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-qfxp-65r3-gfv7</link>
      <description>&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-qfxp-65r3-gfv7</guid>
    </item>
    <item>
      <title>gsd-2019-11135</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2019-11135</link>
      <description>gsd-2019-11135</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2019-11135</guid>
    </item>
    <item>
      <title>openSUSE-SU-2019:2503-1 — Security update for the Linux Kernel</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2019:2503-1</link>
      <description>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for the Linux Kernel&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2019:2503-1</guid>
    </item>
    <item>
      <title>RHSA-2019:3833 — Red Hat Security Advisory: kernel-rt security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2019:3833</link>
      <description>&lt;p&gt;hw: Machine Check Error on Page Size Change (IFU) hw: Intel GPU Denial Of Service while accessing MMIO in lower power state hw: TSX Transaction Asynchronous Abort (TAA)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;hw: Machine Check Error on Page Size Change (IFU) hw: Intel GPU Denial Of Service while accessing MMIO in lower power state hw: TSX Transaction Asynchronous Abort (TAA)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2019:3833</guid>
    </item>
    <item>
      <title>SEVD-2021-285-05 — Conext™ Advisor &amp; Conext™ Control V2</title>
      <link>https://cve.radiocsirt.org/vuln/sevd-2021-285-05</link>
      <description>&lt;p&gt;Schneider Electric is aware of multiple Microsoft Windows vulnerabilities in its Schneider Conext™ Advisor 2 &amp;amp; Conext™ Control V2 products.&#13;
The Conext™ Advisor 2 is a web portal with an efficient, task-oriented interface for managing and optimizing the performance of solar power plants and includes a complete suite of tools for professional users.&#13;
The Conext™ Control V2 is a Solar Power Plant monitoring solution.&#13;
Failure to apply the remediations provided below may risk remote code execution, which could result in undesired behavior within the operating system. An attacker who successfully exploits this vulnerability could execute arbitrary code on the target system and then install programs; view, change, or delete data; or create new accounts with full user rights.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Schneider Electric is aware of multiple Microsoft Windows vulnerabilities in its Schneider Conext™ Advisor 2 &amp;amp; Conext™ Control V2 products.&#13;
The Conext™ Advisor 2 is a web portal with an efficient, task-oriented interface for managing and optimizing the performance of solar power plants and includes a complete suite of tools for professional users.&#13;
The Conext™ Control V2 is a Solar Power Plant monitoring solution.&#13;
Failure to apply the remediations provided below may risk remote code execution, which could result in undesired behavior within the operating system. An attacker who successfully exploits this vulnerability could execute arbitrary code on the target system and then install programs; view, change, or delete data; or create new accounts with full user rights.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/sevd-2021-285-05</guid>
    </item>
    <item>
      <title>SUSE-SU-2019:14217-1 — Security update for microcode_ctl</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2019:14217-1</link>
      <description>&lt;p&gt;Security update for microcode_ctl&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for microcode_ctl&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2019:14217-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2019-11135</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-11135</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: intel-microcode, Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: intel-microcode, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure and 40 more&lt;/p&gt;
&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: intel-microcode, Ubuntu:Pro:14.04:LTS: linux, Ubuntu:Pro:14.04:LTS: linux-aws, Ubuntu:Pro:14.04:LTS: linux-azure, Ubuntu:Pro:14.04:LTS: linux-lts-xenial, Ubuntu:16.04:LTS: intel-microcode, Ubuntu:16.04:LTS: linux, Ubuntu:16.04:LTS: linux-aws, Ubuntu:16.04:LTS: linux-aws-hwe, Ubuntu:16.04:LTS: linux-azure and 40 more&lt;/p&gt;
&lt;p&gt;TSX Asynchronous Abort condition on some CPUs utilizing speculative execution may allow an authenticated user to potentially enable information disclosure via a side channel with local access.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2019-11135</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-0884 — Microsoft Windows: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0884</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in verschiedenen Microsoft Windows Betriebssystemen und Microsoft Windows Azure Stack ausnutzen, um einen Denial of Service Angriff durchzuführen, Code mit erweiterten Privilegien zur Ausführung zu bringen, Sicherheitsmechanismen zu umgehen, Spoofing Angriffe durchzuführen, vertrauliche Daten einzusehen oder seine Privilegien zu erweitern.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter oder anonymer Angreifer kann mehrere Schwachstellen in verschiedenen Microsoft Windows Betriebssystemen und Microsoft Windows Azure Stack ausnutzen, um einen Denial of Service Angriff durchzuführen, Code mit erweiterten Privilegien zur Ausführung zu bringen, Sicherheitsmechanismen zu umgehen, Spoofing Angriffe durchzuführen, vertrauliche Daten einzusehen oder seine Privilegien zu erweitern.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-0884</guid>
    </item>
  </channel>
</rss>
