Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 110 of 264
CVE-2022-1720P3HIGHCVSS 7.8v35v362022-06-20
CVE-2022-1720 [HIGH] CWE-126 CVE-2022-1720: Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vul
Buffer Over-read in function grab_file_name in GitHub repository vim/vim prior to 8.2.4956. This vulnerability is capable of crashing the software, memory modification, and possible remote execution.
nvd
CVE-2021-35550P3MEDIUMCVSS 5.9v33v34+1 more2021-10-20
CVE-2021-35550 [MEDIUM] CVE-2021-35550: Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component
Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: JSSE). Supported versions that are affected are Java SE: 7u311, 8u301, 11.0.12; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TLS to compromise Java SE, Oracl
nvd
CVE-2014-1531P3HIGHCVSS 8.8v19v202014-04-30
CVE-2014-1531 [HIGH] CWE-416 CVE-2014-1531: Use-after-free vulnerability in the nsGenericHTMLElement::GetWidthHeightForImage function in Mozilla
Use-after-free vulnerability in the nsGenericHTMLElement::GetWidthHeightForImage function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving an imgLoader object that i
nvd
CVE-2019-18887P3HIGHCVSS 8.1v30v312019-11-21
CVE-2019-18887 [HIGH] CWE-203 CVE-2019-18887: An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11,
An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. The UriSigner was subject to timing attacks. This is related to symfony/http-kernel.
nvd
CVE-2018-6003P3HIGHCVSS 7.5v26v272018-01-22
CVE-2018-6003 [HIGH] CWE-674 CVE-2018-6003: An issue was discovered in the _asn1_decode_simple_ber function in decoding.c in GNU Libtasn1 before
An issue was discovered in the _asn1_decode_simple_ber function in decoding.c in GNU Libtasn1 before 4.13. Unlimited recursion in the BER decoder leads to stack exhaustion and DoS.
nvd
CVE-2020-28599P3HIGHCVSS 7.8v32v332021-02-24
CVE-2020-28599 [HIGH] CWE-121 CVE-2020-28599: A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality o
A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2021-45342P3HIGHCVSS 7.8v34v352022-01-25
CVE-2021-45342 [HIGH] CWE-120 CVE-2021-45342: A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older
A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
nvd
CVE-2019-13050P3HIGHCVSS 7.5v29v302019-06-29
CVE-2019-13050 [HIGH] CWE-295 CVE-2019-13050: Interaction between the sks-keyserver code through 1.2.0 of the SKS keyserver network, and GnuPG thr
Interaction between the sks-keyserver code through 1.2.0 of the SKS keyserver network, and GnuPG through 2.2.16, makes it risky to have a GnuPG keyserver configuration line referring to a host on the SKS keyserver network. Retrieving data from this network may cause a persistent denial of service, because of a Certificate Spamming Attack.
nvd
CVE-2020-7919P3HIGHCVSS 7.5v312020-03-16
CVE-2020-7919 [HIGH] CWE-295 CVE-2020-7919: Go before 1.12.16 and 1.13.x before 1.13.7 (and the crypto/cryptobyte package before 0.0.0-202001242
Go before 1.12.16 and 1.13.x before 1.13.7 (and the crypto/cryptobyte package before 0.0.0-20200124225646-8b5121be2f68 for Go) allows attacks on clients (resulting in a panic) via a malformed X.509 certificate.
nvd
CVE-2016-1572P3HIGHCVSS 8.4v22v232016-01-22
CVE-2016-1572 [HIGH] CWE-269 CVE-2016-1572: mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, whi
mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.
nvd
CVE-2015-8776P3CRITICALCVSS 9.1v232016-04-19
CVE-2015-8776 [CRITICAL] CWE-189 CVE-2015-8776: The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent
The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly obtain sensitive information via an out-of-range time value.
nvd
CVE-2024-28960P3HIGHCVSS 8.2v38v39+1 more2024-03-29
CVE-2024-28960 [HIGH] CWE-284 CVE-2024-28960: An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mb
An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.
nvd
CVE-2020-5247P3HIGHCVSS 7.5v30v31+1 more2020-02-28
CVE-2020-5247 [HIGH] CWE-113 CVE-2020-5247: In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted inpu
In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted input in a response header, an attacker can use newline characters (i.e. `CR`, `LF` or`/r`, `/n`) to end the header and inject malicious content, such as additional headers or an entirely new response body. This vulnerability is known as HTTP Response Splitti
nvd
CVE-2019-11499P3HIGHCVSS 7.5v29v302019-05-08
CVE-2019-11499 [HIGH] CVE-2019-11499: In the IMAP Server in Dovecot 2.3.3 through 2.3.5.2, the submission-login component crashes if AUTH
In the IMAP Server in Dovecot 2.3.3 through 2.3.5.2, the submission-login component crashes if AUTH PLAIN is attempted over a TLS secured channel with an unacceptable authentication message.
nvd
CVE-2021-21775P3HIGHCVSS 8.0v33v342021-07-07
CVE-2021-21775 [HIGH] CWE-416 CVE-2021-21775: A use-after-free vulnerability exists in the way certain events are processed for ImageLoader object
A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGTK 2.30.4. A specially crafted web page can lead to a potential information leak and further memory corruption. In order to trigger the vulnerability, a victim must be tricked into visiting a malicious webpage.
nvd
CVE-2022-33099P3HIGHCVSS 7.5v35v362022-07-01
CVE-2022-33099 [HIGH] CWE-787 CVE-2022-33099: An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
nvd
CVE-2018-10753P3CRITICALCVSS 9.8v30v31+1 more2018-05-05
CVE-2018-10753 [CRITICAL] CWE-787 CVE-2018-10753: Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 all
Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
nvd
CVE-2020-6070P3HIGHCVSS 7.8v332020-08-10
CVE-2020-6070 [HIGH] CWE-131 CVE-2020-6070: An exploitable code execution vulnerability exists in the file system checking functionality of fsck
An exploitable code execution vulnerability exists in the file system checking functionality of fsck.f2fs 1.12.0. A specially crafted f2fs file can cause a logic flaw and out-of-bounds heap operations, resulting in code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2016-6299P3HIGHCVSS 7.8v23v24+1 more2017-04-14
CVE-2016-6299 [HIGH] CWE-264 CVE-2016-6299: The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and
The scm plug-in in mock might allow attackers to bypass the intended chroot protection mechanism and gain root privileges via a crafted spec file.
nvd
CVE-2020-25862P3HIGHCVSS 7.5v31v32+1 more2020-10-06
CVE-2020-25862 [HIGH] CWE-354 CVE-2020-25862: In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the TCP dissector could crash. Th
In Wireshark 3.2.0 to 3.2.6, 3.0.0 to 3.0.13, and 2.6.0 to 2.6.20, the TCP dissector could crash. This was addressed in epan/dissectors/packet-tcp.c by changing the handling of the invalid 0xFFFF checksum.
nvd