<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Tails</title>
  <link>https://cvedaily.com/pages/tags/tails.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/tails.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Tails</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:01 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2025-69067 – Improper Control of Filename for Include/Require Statement in PHP Program ('PHP ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-69067</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-69067</guid>
    <pubDate>Thu, 22 Jan 2026 17:16:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-69067</strong></p>
  <p>Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AncoraThemes Tails tails allows PHP Local File Inclusion.This issue affects Tails: from n/a through <= 1.4.12.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-98</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-69067">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2022-50398 – In the Linux kernel, the following vulnerability has been resolved:

drm/msm/dp:...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-50398</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-50398</guid>
    <pubDate>Thu, 18 Sep 2025 14:15:39 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2022-50398</strong></p>
  <p>In the Linux kernel, the following vulnerability has been resolved:  drm/msm/dp: add atomic_check to bridge ops  DRM commit_tails() will disable downstream crtc/encoder/bridge if both disable crtc is required and crtc->active is set before pushing a new frame downstream.  There is a rare case that user space display manager issue an extra screen update immediately followed by close DRM device whi…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-50398">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2017-16541 – Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass th...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-16541</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-16541</guid>
    <pubDate>Sat, 04 Nov 2017 18:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2017-16541</strong></p>
  <p>Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web site that leverages file:// mishandling in Firefox, aka TorMoil. NOTE: Tails is unaffected.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-16541">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2015-7665 – Tails before 1.7 includes the wget program but does not prevent automatic fallba...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-7665</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-7665</guid>
    <pubDate>Sun, 27 Dec 2015 19:59:02 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2015-7665</strong></p>
  <p>Tails before 1.7 includes the wget program but does not prevent automatic fallback from passive FTP to active FTP, which allows remote FTP servers to discover the Tor client IP address by reading a (1) PORT or (2) EPRT command.  NOTE: within wget itself, the automatic fallback is not considered a vulnerability by CVE.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-7665">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
