<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from osv_openeuler</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 10:53:18 +0000</lastBuildDate>
    <item>
      <title>OESA-2026-4230 — wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4230</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4230</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:49 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4229 — wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4229</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4229</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:49 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4228 — wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4228</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4228</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:48 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4227 — wireshark security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4227</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: wireshark&lt;/p&gt;
&lt;p&gt;Wireshark allows you to examine protocol data stored in files or as it is captured from wired or wireless (WiFi or Bluetooth) networks, USB devices, and many other sources.  It supports dozens of protocol capture file formats and understands more than a thousand protocols.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;SPDY protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95387)&lt;/p&gt;
&lt;p&gt;Sharkd utility crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95388)&lt;/p&gt;
&lt;p&gt;SCTP protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95389)&lt;/p&gt;
&lt;p&gt;MBIM protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95392)&lt;/p&gt;
&lt;p&gt;CSN.1 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95393)&lt;/p&gt;
&lt;p&gt;Microsoft Network Monitor file parser large loop in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95394)&lt;/p&gt;
&lt;p&gt;IEEE C37.118 Synchrophasor protocol dissector memory leak in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-95395)&lt;/p&gt;
&lt;p&gt;Catapult DCT2000 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96415)&lt;/p&gt;
&lt;p&gt;IEEE 802.11 protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96416)&lt;/p&gt;
&lt;p&gt;RF4CE protocol dissector crash in 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 allows denial of service(CVE-2026-96417)&lt;/p&gt;
&lt;p&gt;TIFF protocol dissector infinite loop in 4.6…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4227</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:47 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4226 — flatpak-builder security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4226</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4226</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:47 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4225 — flatpak-builder security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4225</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4225</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:46 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4224 — flatpak-builder security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4224</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: flatpak-builder&lt;/p&gt;
&lt;p&gt;Flatpak-builder is a tool for building flatpaks from sources.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in flatpak-builder where Git hooks are not disabled when applying patch sources with use-git-am: true. An attacker who can provide a malicious source containing a Git post-applypatch hook can cause the hook to execute on the host during the build process, resulting in arbitrary code execution with the privileges of the user running flatpak-builder.(CVE-2026-86320)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4224</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:45 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4223 — gimp security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4223</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: gimp&lt;/p&gt;
&lt;p&gt;The GIMP is an image composition and editing program, which can be used for creating logos and other graphics for Web pages. The GIMP offers many tools and filters, and provides a large image manipulation toolbox, including channel operations and layers, effects, subpixel imaging and antialiasing, and conversions, together with multilevel undo. The GIMP offers a scripting facility, but many of the included scripts rely on fonts that we cannot distribute.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in the file-ico plugin in GIMP. When processing a specially crafted ICO image file, the plugin does not properly validate the used_clrs (palette count) parameter. This incorrect validation leads to improper memory bounds checking, resulting in a heap out-of-bounds read. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of heap memory contents.(CVE-2026-82328)&lt;/p&gt;
&lt;p&gt;A flaw was found in the file-pvr plugin in GIMP. When processing a specially crafted PVR image file, the VQ (compressed) decoder does not properly perform memory bounds checking. This missing validation results in a heap out-of-bounds read. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of heap memory contents.(CVE-2026-82330)&lt;/p&gt;
&lt;p&gt;A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP4: gimp&lt;/p&gt;
&lt;p&gt;The GIMP is an image composition and editing program, which can be used for creating logos and other graphics for Web pages. The GIMP offers many tools and filters, and provides a large image manipulation toolbox, including channel operations and layers, effects, subpixel imaging and antialiasing, and conversions, together with multilevel undo. The GIMP offers a scripting facility, but many of the included scripts rely on fonts that we cannot distribute.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in the file-ico plugin in GIMP. When processing a specially crafted ICO image file, the plugin does not properly validate the used_clrs (palette count) parameter. This incorrect validation leads to improper memory bounds checking, resulting in a heap out-of-bounds read. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of heap memory contents.(CVE-2026-82328)&lt;/p&gt;
&lt;p&gt;A flaw was found in the file-pvr plugin in GIMP. When processing a specially crafted PVR image file, the VQ (compressed) decoder does not properly perform memory bounds checking. This missing validation results in a heap out-of-bounds read. This issue can result in an application crash, leading to a denial of service or a limited information disclosure of heap memory contents.(CVE-2026-82330)&lt;/p&gt;
&lt;p&gt;A flaw was found in GIMP. When processing a specially crafted lighting preset file, the Lighting Effects filter does not properly validate the number of light sources. This can…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4223</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:45 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4222 — gpsd security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4222</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: gpsd&lt;/p&gt;
&lt;p&gt;gpsd is a service daemon that mediates access to a GPS sensor connected to the host computer by serial or USB interface, making its data on the location/course/velocity of the sensor available to be queried on TCP port 2947 of the host computer.  With gpsd, multiple GPS client applications (such as navigational and war-driving software) can share access to a GPS without contention or loss of data.  Also, gpsd responds to queries with a format that is substantially easier to parse than NMEA 0183.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program via a set title statement with only double-quote characters escaped, enabling arbitrary shell command execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and gnuplot workflow.(CVE-2026-58459)&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a code injection vulnerability in the gpsprof utility that allows an attacker who controls GPS input data to execute arbitrary OS commands by injecting malicious content into the SKY.satellites[].used field, which is inserted unsanitized into a gnuplot heredo…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP3: gpsd&lt;/p&gt;
&lt;p&gt;gpsd is a service daemon that mediates access to a GPS sensor connected to the host computer by serial or USB interface, making its data on the location/course/velocity of the sensor available to be queried on TCP port 2947 of the host computer.  With gpsd, multiple GPS client applications (such as navigational and war-driving software) can share access to a GPS without contention or loss of data.  Also, gpsd responds to queries with a format that is substantially easier to parse than NMEA 0183.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program via a set title statement with only double-quote characters escaped, enabling arbitrary shell command execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and gnuplot workflow.(CVE-2026-58459)&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a code injection vulnerability in the gpsprof utility that allows an attacker who controls GPS input data to execute arbitrary OS commands by injecting malicious content into the SKY.satellites[].used field, which is inserted unsanitized into a gnuplot heredo…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4222</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:45 +0000</pubDate>
    </item>
    <item>
      <title>OESA-2026-4221 — gpsd security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-4221</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: gpsd&lt;/p&gt;
&lt;p&gt;gpsd is a service daemon that mediates access to a GPS sensor connected to the host computer by serial or USB interface, making its data on the location/course/velocity of the sensor available to be queried on TCP port 2947 of the host computer.  With gpsd, multiple GPS client applications (such as navigational and war-driving software) can share access to a GPS without contention or loss of data.  Also, gpsd responds to queries with a format that is substantially easier to parse than NMEA 0183.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program via a set title statement with only double-quote characters escaped, enabling arbitrary shell command execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and gnuplot workflow.(CVE-2026-58459)&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a code injection vulnerability in the gpsprof utility that allows an attacker who controls GPS input data to execute arbitrary OS commands by injecting malicious content into the SKY.satellites[].used field, which is inserted unsanitized into a gnuplot heredo…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:24.03-LTS-SP1: gpsd&lt;/p&gt;
&lt;p&gt;gpsd is a service daemon that mediates access to a GPS sensor connected to the host computer by serial or USB interface, making its data on the location/course/velocity of the sensor available to be queried on TCP port 2947 of the host computer.  With gpsd, multiple GPS client applications (such as navigational and war-driving software) can share access to a GPS without contention or loss of data.  Also, gpsd responds to queries with a format that is substantially easier to parse than NMEA 0183.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a command injection vulnerability in gpsprof that allows attackers who control the GPS device subtype value to execute arbitrary shell commands by embedding backtick payloads in the gnuplot plot title without proper escaping. The subtype field sourced from a DEVICES JSON log entry or NMEA PGRMT sentence is written into a generated gnuplot program via a set title statement with only double-quote characters escaped, enabling arbitrary shell command execution as the user running gnuplot when the victim renders the generated plot through the gpsprof and gnuplot workflow.(CVE-2026-58459)&lt;/p&gt;
&lt;p&gt;gpsd through release-3.27.5, fixed at commit 4c06658, contains a code injection vulnerability in the gpsprof utility that allows an attacker who controls GPS input data to execute arbitrary OS commands by injecting malicious content into the SKY.satellites[].used field, which is inserted unsanitized into a gnuplot heredo…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-4221</guid>
      <pubDate>Wed, 30 Sep 2026 13:47:44 +0000</pubDate>
    </item>
  </channel>
</rss>
