Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 116 of 264
CVE-2008-2108P3CRITICALCVSS 9.8v8v92008-05-07
CVE-2008-2108 [CRITICAL] CWE-331 CVE-2008-2108: The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems
The GENERATE_SEED macro in PHP 4.x before 4.4.8 and 5.x before 5.2.5, when running on 64-bit systems, performs a multiplication that generates a portion of zero bits during conversion due to insufficient precision, which produces 24 bits of entropy and simplifies brute force attacks against protection mechanisms that use the rand and mt_rand functio
nvd
CVE-2013-5615P3CRITICALCVSS 9.8v18v19+1 more2013-12-11
CVE-2013-5615 [CRITICAL] CVE-2013-5615: The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderb
The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors.
nvd
CVE-2014-1522P3CRITICALCVSS 9.3v192014-04-30
CVE-2014-1522 [CRITICAL] CWE-125 CVE-2014-1522: The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla
The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read, memory corruption, and application crash) via crafted content.
nvd
CVE-2021-27291P3HIGHCVSS 7.5v32v332021-03-17
CVE-2021-27291 [HIGH] CWE-1333 CVE-2021-27291: In pygments 1.1+, fixed in 2.7.4, the lexers used to parse programming languages rely heavily on reg
In pygments 1.1+, fixed in 2.7.4, the lexers used to parse programming languages rely heavily on regular expressions. Some of the regular expressions have exponential or cubic worst-case complexity and are vulnerable to ReDoS. By crafting malicious input, an attacker can cause a denial of service.
nvd
CVE-2014-1481P3HIGHCVSS 7.5v19v202014-02-06
CVE-2014-1481 [HIGH] CVE-2014-1481: Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey be
Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to bypass intended restrictions on window objects by leveraging inconsistency in native getter methods across different JavaScript engines.
nvd
CVE-2016-4008P3MEDIUMCVSS 5.9v22v23+1 more2016-05-05
CVE-2016-4008 [MEDIUM] CWE-399 CVE-2016-4008: The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without
The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.8, when used without the ASN1_DECODE_FLAG_STRICT_DER flag, allows remote attackers to cause a denial of service (infinite recursion) via a crafted certificate.
nvd
CVE-2014-0021P3HIGHCVSS 7.5v19v202019-11-15
CVE-2014-0021 [HIGH] CVE-2014-0021: Chrony before 1.29.1 has traffic amplification in cmdmon protocol
Chrony before 1.29.1 has traffic amplification in cmdmon protocol
nvd
CVE-2020-36323P3HIGHCVSS 8.2v32v33+1 more2021-04-14
CVE-2020-36323 [HIGH] CWE-134 CVE-2020-36323: In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can
In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.
nvd
CVE-2024-25982P3HIGHCVSS 8.8v382024-02-19
CVE-2024-25982 [HIGH] CWE-352 CVE-2024-25982: The link to update all installed language packs did not include the necessary token to prevent a CSR
The link to update all installed language packs did not include the necessary token to prevent a CSRF risk.
nvd
CVE-2020-24659P3HIGHCVSS 7.5v32v332020-09-04
CVE-2020-24659 [HIGH] CWE-476 CVE-2020-24659: An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in
An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in a TLS 1.3 client if a no_renegotiation alert is sent with unexpected timing, and then an invalid second handshake occurs. The crash happens in the application's error handling path, where the gnutls_deinit function is called after detecting a handshake f
nvd
CVE-2020-12663P3HIGHCVSS 7.5v31v322020-05-19
CVE-2020-12663 [HIGH] CWE-835 CVE-2020-12663: Unbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.
Unbound before 1.10.1 has an infinite loop via malformed DNS answers received from upstream servers.
nvd
CVE-2021-39929P3HIGHCVSS 7.5v34v352021-11-19
CVE-2021-39929 [HIGH] CWE-674 CVE-2021-39929: Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.1
Uncontrolled Recursion in the Bluetooth DHT dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file
nvd
CVE-2022-42309P3HIGHCVSS 8.8v35v36+1 more2022-11-01
CVE-2022-42309 [HIGH] CWE-763 CVE-2022-42309: Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause
Xenstore: Guests can crash xenstored Due to a bug in the fix of XSA-115 a malicious guest can cause xenstored to use a wrong pointer during node creation in an error path, resulting in a crash of xenstored or a memory corruption in xenstored causing further damage. Entering the error path can be controlled by the guest e.g. by exceeding the quota value
nvd
CVE-2021-30593P3HIGHCVSS 8.1v33v34+1 more2021-08-26
CVE-2021-30593 [HIGH] CWE-125 CVE-2021-30593: Out of bounds read in Tab Strip in Google Chrome prior to 92.0.4515.131 allowed an attacker who conv
Out of bounds read in Tab Strip in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page.
nvd
CVE-2018-14553P3HIGHCVSS 7.5v322020-02-11
CVE-2018-14553 [HIGH] CWE-476 CVE-2018-14553: gdImageClone in gd.c in libgd 2.1.0-rc2 through 2.2.5 has a NULL pointer dereference allowing attack
gdImageClone in gd.c in libgd 2.1.0-rc2 through 2.2.5 has a NULL pointer dereference allowing attackers to crash an application via a specific function call sequence. Only affects PHP when linked with an external libgd (not bundled).
nvd
CVE-2019-3836P3HIGHCVSS 7.5v282019-04-01
CVE-2019-3836 [HIGH] CWE-456 CVE-2019-3836: It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer acc
It was discovered in gnutls before version 3.6.7 upstream that there is an uninitialized pointer access in gnutls versions 3.6.3 or later which can be triggered by certain post-handshake messages.
nvd
CVE-2021-20718P3HIGHCVSS 7.5v33v342021-05-20
CVE-2021-20718 [HIGH] CWE-400 CVE-2021-20718: mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) conditio
mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified vectors.
nvd
CVE-2022-27406P3HIGHCVSS 7.5v34v35+1 more2022-04-22
CVE-2022-27406 [HIGH] CWE-125 CVE-2022-27406: FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation vi
FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size.
nvd
CVE-2018-20547P3HIGHCVSS 8.1v34v35+1 more2018-12-28
CVE-2018-20547 [HIGH] CWE-119 CVE-2018-20547: There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp data.
nvd
CVE-2021-4182P3HIGHCVSS 7.5v34v352021-12-30
CVE-2021-4182 [HIGH] CWE-835 CVE-2021-4182: Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via
Crash in the RFC 7468 dissector in Wireshark 3.6.0 and 3.4.0 to 3.4.10 allows denial of service via packet injection or crafted capture file
nvd