cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 130 of 264
CVE-2022-1706P3MEDIUMCVSS 6.5v34v35+1 more2022-05-17
CVE-2022-1706 [MEDIUM] CWE-863 CVE-2022-1706: A vulnerability was found in Ignition where ignition configs are accessible from unprivileged contai A vulnerability was found in Ignition where ignition configs are accessible from unprivileged containers in VMs running on VMware products. This issue is only relevant in user environments where the Ignition config contains secrets. The highest threat from this vulnerability is to data confidentiality. Possible workaround is to not put secrets in the
nvd
CVE-2017-12843P3MEDIUMCVSS 6.5v262017-08-22
CVE-2017-12843 [MEDIUM] CWE-20 CVE-2017-12843: Cyrus IMAP before 3.0.3 allows remote authenticated users to write to arbitrary files via a crafted Cyrus IMAP before 3.0.3 allows remote authenticated users to write to arbitrary files via a crafted (1) SYNCAPPLY, (2) SYNCGET or (3) SYNCRESTORE command.
nvd
CVE-2021-43337P3MEDIUMCVSS 6.5v34v352021-11-17
CVE-2021-43337 [MEDIUM] CVE-2021-43337: SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new Accounting SchedMD Slurm 21.08.* before 21.08.4 has Incorrect Access Control. On sites using the new AccountingStoreFlags=job_script and/or job_env options, the access control rules in SlurmDBD may permit users to request job scripts and environment files to which they should not have access.
nvd
CVE-2014-9656P3HIGHCVSS 7.5v20v212015-02-08
CVE-2014-9656 [HIGH] CWE-119 CVE-2014-9656: The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly The tt_sbit_decoder_load_image function in sfnt/ttsbit.c in FreeType before 2.5.4 does not properly check for an integer overflow, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted OpenType font.
nvd
CVE-2016-5177P3HIGHCVSS 8.8v24v252017-05-23
CVE-2016-5177 [HIGH] CWE-416 CVE-2016-5177: Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via unknown vectors.
nvd
CVE-2015-5607P3HIGHCVSS 8.8v21v222017-09-20
CVE-2015-5607 [HIGH] CWE-352 CVE-2015-5607: Cross-site request forgery in the REST API in IPython 2 and 3. Cross-site request forgery in the REST API in IPython 2 and 3.
nvd
CVE-2022-40320P3HIGHCVSS 8.8v35v36+1 more2022-09-09
CVE-2022-40320 [HIGH] CWE-125 CVE-2022-40320: cfg_tilde_expand in confuse.c in libConfuse 3.3 has a heap-based buffer over-read. cfg_tilde_expand in confuse.c in libConfuse 3.3 has a heap-based buffer over-read.
nvd
CVE-2011-1770P3HIGHCVSS 7.5v14v152011-06-24
CVE-2011-1770 [HIGH] CWE-191 CVE-2011-1770: Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before Integer underflow in the dccp_parse_options function (net/dccp/options.c) in the Linux kernel before 2.6.33.14 allows remote attackers to cause a denial of service via a Datagram Congestion Control Protocol (DCCP) packet with an invalid feature options length, which triggers a buffer over-read.
nvd
CVE-2014-9661P3HIGHCVSS 7.5v20v212015-02-08
CVE-2014-9661 [HIGH] CVE-2014-9661: type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without triggering an error, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted Type42 font.
nvd
CVE-2009-1837P3HIGHCVSS 7.5v9v102009-06-12
CVE-2009-1837 [HIGH] CWE-362 CVE-2009-1837: Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary code via a page transition during Java applet loading, related to a use-after-free vulnerability for memory associated with a destroyed Java object.
nvd
CVE-2016-7969P3HIGHCVSS 7.5v23v24+1 more2017-03-03
CVE-2016-7969 [HIGH] CWE-125 CVE-2016-7969: The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cau The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."
nvd
CVE-2016-8693P3HIGHCVSS 7.8v232017-02-15
CVE-2016-8693 [HIGH] CWE-415 CVE-2016-8693: Double free vulnerability in the mem_close function in jas_stream.c in JasPer before 1.900.10 allows Double free vulnerability in the mem_close function in jas_stream.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted BMP image to the imginfo command.
nvd
CVE-2021-2389P3MEDIUMCVSS 5.9v34v352021-07-21
CVE-2021-2389 [MEDIUM] CVE-2021-2389: Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions th Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 5.7.34 and prior and 8.0.25 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthori
nvd
CVE-2023-42822P3MEDIUMCVSS 6.5v37v382023-09-27
CVE-2023-42822 [MEDIUM] CWE-125 CVE-2023-42822: xrdp is an open source remote desktop protocol server. Access to the font glyphs in xrdp_painter.c i xrdp is an open source remote desktop protocol server. Access to the font glyphs in xrdp_painter.c is not bounds-checked . Since some of this data is controllable by the user, this can result in an out-of-bounds read within the xrdp executable. The vulnerability allows an out-of-bounds read within a potentially privileged process. On non-Debian plat
nvd
CVE-2018-14465P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14465 [HIGH] CWE-125 CVE-2018-14465: The RSVP parser in tcpdump before 4.9.3 has a buffer over-read in print-rsvp.c:rsvp_obj_print(). The RSVP parser in tcpdump before 4.9.3 has a buffer over-read in print-rsvp.c:rsvp_obj_print().
nvd
CVE-2018-14467P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14467 [HIGH] CWE-125 CVE-2018-14467: The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print( The BGP parser in tcpdump before 4.9.3 has a buffer over-read in print-bgp.c:bgp_capabilities_print() (BGP_CAPCODE_MP).
nvd
CVE-2018-14464P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14464 [HIGH] CWE-125 CVE-2018-14464: The LMP parser in tcpdump before 4.9.3 has a buffer over-read in print-lmp.c:lmp_print_data_link_sub The LMP parser in tcpdump before 4.9.3 has a buffer over-read in print-lmp.c:lmp_print_data_link_subobjs().
nvd
CVE-2018-14470P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14470 [HIGH] CWE-125 CVE-2018-14470: The Babel parser in tcpdump before 4.9.3 has a buffer over-read in print-babel.c:babel_print_v2(). The Babel parser in tcpdump before 4.9.3 has a buffer over-read in print-babel.c:babel_print_v2().
nvd
CVE-2018-14461P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14461 [HIGH] CWE-125 CVE-2018-14461: The LDP parser in tcpdump before 4.9.3 has a buffer over-read in print-ldp.c:ldp_tlv_print(). The LDP parser in tcpdump before 4.9.3 has a buffer over-read in print-ldp.c:ldp_tlv_print().
nvd
CVE-2018-14466P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-14466 [HIGH] CWE-125 CVE-2018-14466: The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rx_cache_find() and rx_ca The Rx parser in tcpdump before 4.9.3 has a buffer over-read in print-rx.c:rx_cache_find() and rx_cache_insert().
nvd
Fedoraproject Fedora vulnerabilities | cvebase