<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 11:09:33 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:50141 — Important: sg3_utils security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:50141</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: sg3_utils, AlmaLinux:9: sg3_utils-devel, AlmaLinux:9: sg3_utils-libs&lt;/p&gt;
&lt;p&gt;The sg3_utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export (CVE-2026-16313)&lt;/p&gt;
&lt;p&gt;Bug Fix(es) and Enhancement(s):&lt;/p&gt;
&lt;p&gt;* sg_inq output conformance for SCSI name string and ATA fields [almalinux-9.8.z] (JIRA:AlmaLinux-188130)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: sg3_utils, AlmaLinux:9: sg3_utils-devel, AlmaLinux:9: sg3_utils-libs&lt;/p&gt;
&lt;p&gt;The sg3_utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export (CVE-2026-16313)&lt;/p&gt;
&lt;p&gt;Bug Fix(es) and Enhancement(s):&lt;/p&gt;
&lt;p&gt;* sg_inq output conformance for SCSI name string and ATA fields [almalinux-9.8.z] (JIRA:AlmaLinux-188130)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:50141</guid>
    </item>
    <item>
      <title>EUVD-2026-380626</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-380626</link>
      <description>EUVD-2026-380626</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-380626</guid>
    </item>
    <item>
      <title>fkie_cve-2026-16313</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-16313</link>
      <description>&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-16313</guid>
    </item>
    <item>
      <title>GHSA-wqmp-fw94-rpg4</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wqmp-fw94-rpg4</link>
      <description>&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wqmp-fw94-rpg4</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-16313 — Sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-16313</link>
      <description>msrc_CVE-2026-16313</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-16313</guid>
    </item>
    <item>
      <title>OESA-2026-3244 — sg3_utils security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-3244</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: sg3_utils, openEuler:24.03-LTS-SP4: sg3_utils, openEuler:20.03-LTS-SP4: sg3_utils, openEuler:22.03-LTS-SP4: sg3_utils, openEuler:24.03-LTS-SP1: sg3_utils&lt;/p&gt;
&lt;p&gt;The sg3_utils package contains utilities that send SCSI commands to devices. As well as devices on transports traditionally associated with SCSI (e.g. Fibre Channel (FCP), Serial Attached SCSI (SAS) and the SCSI Parallel Interface(SPI)) many other devices use SCSI command sets. ATAPI cd/dvd drives and SATA disks that connect via a translation layer or a bridge device are examples of devices that use SCSI command sets.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.(CVE-2026-16313)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: sg3_utils, openEuler:24.03-LTS-SP4: sg3_utils, openEuler:20.03-LTS-SP4: sg3_utils, openEuler:22.03-LTS-SP4: sg3_utils, openEuler:24.03-LTS-SP1: sg3_utils&lt;/p&gt;
&lt;p&gt;The sg3_utils package contains utilities that send SCSI commands to devices. As well as devices on transports traditionally associated with SCSI (e.g. Fibre Channel (FCP), Serial Attached SCSI (SAS) and the SCSI Parallel Interface(SPI)) many other devices use SCSI command sets. ATAPI cd/dvd drives and SATA disks that connect via a translation layer or a bridge device are examples of devices that use SCSI command sets.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.(CVE-2026-16313)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-3244</guid>
    </item>
    <item>
      <title>RHSA-2026:50141 — Red Hat Security Advisory: sg3_utils security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:50141</link>
      <description>&lt;p&gt;sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:50141</guid>
    </item>
    <item>
      <title>RHSA-2026:54769 — Red Hat Security Advisory: OpenShift Container Platform 4.22.10 bug fix and security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:54769</link>
      <description>&lt;p&gt;kernel: KVM: x86: Don&amp;#39;t (re)check L1 intercepts when completing userspace I/O samba: Missing access check on reparse point operations libarchive: Double-Free Vulnerability in RAR5 Decompression Logic via dangling filtered_buf pointer in init_unpack() sssd: sssd: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation sssd: sssd: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export rsync: TOCTOU symlink race condition allowing local privilege escalation in daemon mode without chroot. unbound: Unbound: Cache manipulation via &amp;#39;ghost domain names&amp;#39; attack unbound: Unbound: Denial of Service via excessive EDNS options vim: Vim: Arbitrary Code Execution via crafted directory names vim: Vim: Arbitrary code execution via crafted step-definition patterns vim: Vim: Arbitrary code execution via Python omni-completion acl: Symlink traversal privilege escalation via libacl functions vim: Vim: Out-of-bounds Write in Spell File Word Count vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion vim: Vim: Arbitrary code execution via crafted PHP file in omni-completion vim: Vim: Arbitrary command execution via crafted tags file in C omni-completion openssh: OpenSSH: Use-after-free vulnerab…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;kernel: KVM: x86: Don&amp;#39;t (re)check L1 intercepts when completing userspace I/O samba: Missing access check on reparse point operations libarchive: Double-Free Vulnerability in RAR5 Decompression Logic via dangling filtered_buf pointer in init_unpack() sssd: sssd: sudo LDAP provider searches entire directory tree for sudoRole objects by default, enabling privilege escalation sssd: sssd: GPO cache path traversal via unsanitized gPCFileSysPath allows Kerberos authentication bypass sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export rsync: TOCTOU symlink race condition allowing local privilege escalation in daemon mode without chroot. unbound: Unbound: Cache manipulation via &amp;#39;ghost domain names&amp;#39; attack unbound: Unbound: Denial of Service via excessive EDNS options vim: Vim: Arbitrary Code Execution via crafted directory names vim: Vim: Arbitrary code execution via crafted step-definition patterns vim: Vim: Arbitrary code execution via Python omni-completion acl: Symlink traversal privilege escalation via libacl functions vim: Vim: Out-of-bounds Write in Spell File Word Count vim: Vim: Denial of Service via stack out-of-bounds write in spell_soundfold_sofo() vim: Vim: Arbitrary code execution via malicious docstrings in Python omni-completion vim: Vim: Arbitrary code execution via crafted PHP file in omni-completion vim: Vim: Arbitrary command execution via crafted tags file in C omni-completion openssh: OpenSSH: Use-after-free vulnerab…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:54769</guid>
    </item>
    <item>
      <title>RLSA-2026:50141 — Important: sg3_utils security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:50141</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:9: sg3_utils&lt;/p&gt;
&lt;p&gt;The sg3_utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export (CVE-2026-16313)&lt;/p&gt;
&lt;p&gt;Bug Fix(es) and Enhancement(s):&lt;/p&gt;
&lt;p&gt;* sg_inq output conformance for SCSI name string and ATA fields [rhel-9.8.z] (JIRA:Rocky Linux-188130)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:9: sg3_utils&lt;/p&gt;
&lt;p&gt;The sg3_utils packages provide command-line utilities for devices that use the Small Computer System Interface (SCSI) command sets.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* sg3_utils: sg3_utils: arbitrary command execution via udev property injection in sg_inq --export (CVE-2026-16313)&lt;/p&gt;
&lt;p&gt;Bug Fix(es) and Enhancement(s):&lt;/p&gt;
&lt;p&gt;* sg_inq output conformance for SCSI name string and ATA fields [rhel-9.8.z] (JIRA:Rocky Linux-188130)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:50141</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-16313</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-16313</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: sg3-utils, Ubuntu:16.04:LTS: sg3-utils, Ubuntu:18.04:LTS: sg3-utils, Ubuntu:20.04:LTS: sg3-utils, Ubuntu:22.04:LTS: sg3-utils, Ubuntu:24.04:LTS: sg3-utils, Ubuntu:26.04:LTS: sg3-utils&lt;/p&gt;
&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: sg3-utils, Ubuntu:16.04:LTS: sg3-utils, Ubuntu:18.04:LTS: sg3-utils, Ubuntu:20.04:LTS: sg3-utils, Ubuntu:22.04:LTS: sg3-utils, Ubuntu:24.04:LTS: sg3-utils, Ubuntu:26.04:LTS: sg3-utils&lt;/p&gt;
&lt;p&gt;A flaw was found in sg3_utils. The sg_inq command, when invoked with the --export option, outputs device identification data without sanitizing control characters in SCSI name string fields. A newline character embedded in a device-supplied name string can inject arbitrary properties into the udev device database. This could allow an attacker who can present a crafted SCSI device to execute arbitrary commands as root when the device is disconnected.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-16313</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2645 — Red Hat Enterprise Linux (sg3_utils): Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit Administratorr…</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2645</link>
      <description>&lt;p&gt;Ein Angreifer mit physischem Zugriff kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer mit physischem Zugriff kann eine Schwachstelle in Red Hat Enterprise Linux ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2645</guid>
    </item>
  </channel>
</rss>
