cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 120 of 264
CVE-2021-46790P3HIGHCVSS 7.8v35v362022-05-02
CVE-2021-46790 [HIGH] CWE-787 CVE-2021-46790: ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however, it is shipped by some Linux distributions.
nvd
CVE-2021-45082P3HIGHCVSS 7.8v34v35+1 more2022-02-19
CVE-2021-45082 [HIGH] CWE-77 CVE-2021-45082: An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_inva An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_invalid_imports can allow Cheetah code to import Python modules via the "#from MODULE import" substring. (Only lines beginning with #import are blocked.)
nvd
CVE-2021-35266P3HIGHCVSS 7.8v33v352021-09-07
CVE-2021-35266 [HIGH] CWE-787 CVE-2021-35266: In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution.
nvd
CVE-2020-24330P3HIGHCVSS 7.8v332020-08-13
CVE-2020-24330 [HIGH] CWE-269 CVE-2020-24330: An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileg An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges instead of by the tss user, it fails to drop the root gid privilege when no longer needed.
nvd
CVE-2020-24331P3HIGHCVSS 7.8v332020-08-13
CVE-2020-24331 [HIGH] CWE-269 CVE-2020-24331: An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileg An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the tss user still has read and write access to the /etc/tcsd.conf file (which contains various settings related to this daemon).
nvd
CVE-2023-43665P3HIGHCVSS 7.5v392023-11-03
CVE-2023-43665 [HIGH] CVE-2023-43665: In Django 3.2 before 3.2.22, 4.1 before 4.1.12, and 4.2 before 4.2.6, the django.utils.text.Truncato In Django 3.2 before 3.2.22, 4.1 before 4.1.12, and 4.2 before 4.2.6, the django.utils.text.Truncator chars() and words() methods (when used with html=True) are subject to a potential DoS (denial of service) attack via certain inputs with very long, potentially malformed HTML text. The chars() and words() methods are used to implement the truncatechars_html a
nvd
CVE-2016-3096P3HIGHCVSS 7.8v22v23+1 more2016-06-03
CVE-2016-3096 [HIGH] CWE-59 CVE-2016-3096: The create_script function in the lxc_container module in Ansible before 1.9.6-1 and 2.x before 2.0. The create_script function in the lxc_container module in Ansible before 1.9.6-1 and 2.x before 2.0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /opt/.lxc-attach-script, (2) the archived container in the archive_path directory, or the (3) lxc-attach-script.log or (4) lxc-attach-script.err files in the
nvd
CVE-2024-23837P3HIGHCVSS 7.5v38v392024-02-26
CVE-2024-23837 [HIGH] CWE-770 CVE-2024-23837: LibHTP is a security-aware parser for the HTTP protocol. Crafted traffic can cause excessive process LibHTP is a security-aware parser for the HTTP protocol. Crafted traffic can cause excessive processing time of HTTP headers, leading to denial of service. This issue is addressed in 0.5.46.
nvd
CVE-2021-35610P3HIGHCVSS 7.1v33v34+1 more2021-10-20
CVE-2021-35610 [HIGH] CVE-2021-35610: Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.26 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to
nvd
CVE-2023-5344P3HIGHCVSS 7.5v37v382023-10-02
CVE-2023-5344 [HIGH] CWE-122 CVE-2023-5344: Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969. Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969.
nvd
CVE-2022-3437P3MEDIUMCVSS 6.5v36v372023-01-12
CVE-2022-3437 [MEDIUM] CWE-122 CVE-2022-3437: A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unw A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal. The DES and Triple-DES decryption routines in the Heimdal GSSAPI library allow a length-limited write buffer overflow on malloc() allocated memory when presented with a maliciously small packet. This flaw allows a remote
nvd
CVE-2021-39254P3HIGHCVSS 7.8v33v352021-09-07
CVE-2021-39254 [HIGH] CWE-190 CVE-2021-39254: A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overfl A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overflow in the function ntfs_attr_record_resize, in NTFS-3G < 2021.8.22.
nvd
CVE-2020-25603P3HIGHCVSS 7.8v31v32+1 more2020-09-23
CVE-2020-25603 [HIGH] CWE-670 CVE-2020-25603: An issue was discovered in Xen through 4.14.x. There are missing memory barriers when accessing/allo An issue was discovered in Xen through 4.14.x. There are missing memory barriers when accessing/allocating an event channel. Event channels control structures can be accessed lockless as long as the port is considered to be valid. Such a sequence is missing an appropriate memory barrier (e.g., smp_*mb()) to prevent both the compiler and CPU from re-or
nvd
CVE-2022-32743P3HIGHCVSS 7.5v372022-09-01
CVE-2022-32743 [HIGH] CWE-276 CVE-2022-32743: Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.
nvd
CVE-2018-16877P3HIGHCVSS 7.8v28v29+1 more2019-04-18
CVE-2018-16877 [HIGH] CWE-287 CVE-2018-16877: A flaw was found in the way pacemaker's client-server authentication was implemented in versions up A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalation.
nvd
CVE-2022-1158P3HIGHCVSS 7.8v362022-08-05
CVE-2022-1158 [HIGH] CWE-416 CVE-2022-1158: A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as t A flaw was found in KVM. When updating a guest's page table entry, vm_pgoff was improperly used as the offset to get the page's pfn. As vaddr and vm_pgoff are controllable by user-mode processes, this flaw allows unprivileged local users on the host to write outside the userspace region and potentially corrupt the kernel, resulting in a denial of servic
nvd
CVE-2023-31137P3HIGHCVSS 7.5v37v382023-05-09
CVE-2023-31137 [HIGH] CWE-191 CVE-2023-31137: MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 an MaraDNS is open-source software that implements the Domain Name System (DNS). In version 3.5.0024 and prior, a remotely exploitable integer underflow vulnerability in the DNS packet decompression function allows an attacker to cause a Denial of Service by triggering an abnormal program termination. The vulnerability exists in the `decomp_get_rddata`
nvd
CVE-2012-5617P3HIGHCVSS 7.8v18v192019-11-25
CVE-2012-5617 [HIGH] CWE-269 CVE-2012-5617: gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation
nvd
CVE-2021-31566P3HIGHCVSS 7.8v352022-08-23
CVE-2021-31566 [HIGH] CWE-59 CVE-2021-31566: An improper link resolution flaw can occur while extracting an archive leading to changing modes, ti An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to gain more privilege
nvd
CVE-2022-40673P3HIGHCVSS 7.8v362022-09-14
CVE-2022-40673 [HIGH] CWE-862 CVE-2022-40673: KDiskMark before 3.1.0 lacks authorization checking for D-Bus methods such as Helper::flushPageCache KDiskMark before 3.1.0 lacks authorization checking for D-Bus methods such as Helper::flushPageCache.
nvd
Fedoraproject Fedora vulnerabilities | cvebase