<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Tue, 06 Oct 2026 06:34:20 +0000</lastBuildDate>
    <item>
      <title>certfr-2026-avi-0199 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Certaines d'entre elles permettent à un attaq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0199</link>
      <description>certfr-2026-avi-0199</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0199</guid>
    </item>
    <item>
      <title>EUVD-2026-234106</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-234106</link>
      <description>EUVD-2026-234106</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-234106</guid>
    </item>
    <item>
      <title>fkie_cve-2022-29189</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-29189</link>
      <description>&lt;p&gt;Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or timed out. An attacker could exploit this to cause excessive memory usage. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or timed out. An attacker could exploit this to cause excessive memory usage. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-29189</guid>
    </item>
    <item>
      <title>GHSA-cx94-mrg9-rq4j — Pion/DTLS contains buffer for inbound DTLS fragments with no limit</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-cx94-mrg9-rq4j</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/pion/dtls, Go: github.com/pion/dtls/v2&lt;/p&gt;
&lt;p&gt;### Impact
A buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or times out. An attacker could exploit this to cause excessive memory usage.&lt;/p&gt;
&lt;p&gt;### Patches
Upgrade to Pion DTLS v2.1.4&lt;/p&gt;
&lt;p&gt;### Workarounds
No workarounds available, upgrade to Pion DTLS v2.1.4&lt;/p&gt;
&lt;p&gt;### References
Thank you to [Juho Nurminen](https://github.com/jupenur) and the Mattermost team for discovering and reporting this.&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory:
* Open an issue in [Pion DTLS](http://github.com/pion/dtls)
* Email us at [team@pion.ly](mailto:team@pion.ly)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/pion/dtls, Go: github.com/pion/dtls/v2&lt;/p&gt;
&lt;p&gt;### Impact
A buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or times out. An attacker could exploit this to cause excessive memory usage.&lt;/p&gt;
&lt;p&gt;### Patches
Upgrade to Pion DTLS v2.1.4&lt;/p&gt;
&lt;p&gt;### Workarounds
No workarounds available, upgrade to Pion DTLS v2.1.4&lt;/p&gt;
&lt;p&gt;### References
Thank you to [Juho Nurminen](https://github.com/jupenur) and the Mattermost team for discovering and reporting this.&lt;/p&gt;
&lt;p&gt;### For more information
If you have any questions or comments about this advisory:
* Open an issue in [Pion DTLS](http://github.com/pion/dtls)
* Email us at [team@pion.ly](mailto:team@pion.ly)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-cx94-mrg9-rq4j</guid>
    </item>
    <item>
      <title>gsd-2022-29189</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-29189</link>
      <description>gsd-2022-29189</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-29189</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-29189</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-29189</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: snowflake, Ubuntu:Pro:22.04:LTS: telegraf&lt;/p&gt;
&lt;p&gt;Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or timed out. An attacker could exploit this to cause excessive memory usage. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: snowflake, Ubuntu:Pro:22.04:LTS: telegraf&lt;/p&gt;
&lt;p&gt;Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user until the handshake completes or timed out. An attacker could exploit this to cause excessive memory usage. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-29189</guid>
    </item>
  </channel>
</rss>
