cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 138 of 264
CVE-2018-16228P3HIGHCVSS 7.5v29v30+1 more2019-10-03
CVE-2018-16228 [HIGH] CWE-125 CVE-2018-16228: The HNCP parser in tcpdump before 4.9.3 has a buffer over-read in print-hncp.c:print_prefix(). The HNCP parser in tcpdump before 4.9.3 has a buffer over-read in print-hncp.c:print_prefix().
nvd
CVE-2011-1755P3HIGHCVSS 7.5v13v14+1 more2011-06-21
CVE-2011-1755 [HIGH] CVE-2011-1755: jabberd2 before 2.2.14 does not properly detect recursion during entity expansion, which allows remo jabberd2 before 2.2.14 does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564.
nvd
CVE-2022-24464P3HIGHCVSS 7.5v34v35+1 more2022-03-09
CVE-2022-24464 [HIGH] CWE-400 CVE-2022-24464: .NET and Visual Studio Denial of Service Vulnerability .NET and Visual Studio Denial of Service Vulnerability
nvd
CVE-2024-31444P4MEDIUMCVSS 5.4v392024-05-14
CVE-2024-31444 [MEDIUM] CWE-79 CVE-2024-31444: Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, so Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, some of the data stored in `automation_tree_rules_form_save()` function in `automation_tree_rules.php` is not thoroughly checked and is used to concatenate the HTML statement in `form_confirm()` function from `lib/html.php` , finally resulting in cross-s
nvd
CVE-2018-10756P3HIGHCVSS 7.8v31v322020-05-15
CVE-2018-10756 [HIGH] CWE-416 CVE-2018-10756: Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to c Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file.
nvd
CVE-2017-1000050P3HIGHCVSS 7.5v32v332017-07-17
CVE-2017-1000050 [HIGH] CWE-476 CVE-2017-1000050: JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to c JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to check to see if the image contained at least one component resulting in a denial-of-service.
nvd
CVE-2022-38013P3HIGHCVSS 7.5v35v36+1 more2022-09-13
CVE-2022-38013 [HIGH] CWE-400 CVE-2022-38013: .NET Core and Visual Studio Denial of Service Vulnerability .NET Core and Visual Studio Denial of Service Vulnerability
nvd
CVE-2019-19064P3HIGHCVSS 7.5v30v312019-11-18
CVE-2019-19064 [HIGH] CWE-401 CVE-2019-19064: A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl-lpspi.c in the Linux kernel t A memory leak in the fsl_lpspi_probe() function in drivers/spi/spi-fsl-lpspi.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering pm_runtime_get_sync() failures, aka CID-057b8945f78f. NOTE: third parties dispute the relevance of this because an attacker cannot realistically control these
nvd
CVE-2015-2059P3HIGHCVSS 7.5v21v222015-08-12
CVE-2015-2059 [HIGH] CWE-119 CVE-2015-2059: The stringprep_utf8_to_ucs4 function in libin before 1.31, as used in jabberd2, allows context-depen The stringprep_utf8_to_ucs4 function in libin before 1.31, as used in jabberd2, allows context-dependent attackers to read system memory and possibly have other unspecified impact via invalid UTF-8 characters in a string, which triggers an out-of-bounds read.
nvd
CVE-2021-27921P3HIGHCVSS 7.5v32v33+1 more2021-03-03
CVE-2021-27921 [HIGH] CWE-20 CVE-2021-27921: Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the r Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a contained image is not properly checked for a BLP container, and thus an attempted memory allocation can be very large.
nvd
CVE-2021-27923P3HIGHCVSS 7.5v32v33+1 more2021-03-03
CVE-2021-27923 [HIGH] CWE-20 CVE-2021-27923: Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the r Pillow before 8.1.2 allows attackers to cause a denial of service (memory consumption) because the reported size of a contained image is not properly checked for an ICO container, and thus an attempted memory allocation can be very large.
nvd
CVE-2016-2145P3HIGHCVSS 7.5v232016-04-15
CVE-2016-2145 [HIGH] CWE-20 CVE-2016-2145: The am_read_post_data function in mod_auth_mellon before 0.11.1 does not check if the ap_get_client_ The am_read_post_data function in mod_auth_mellon before 0.11.1 does not check if the ap_get_client_block function returns an error, which allows remote attackers to cause a denial of service (segmentation fault and process crash) via a crafted POST data.
nvd
CVE-2016-1254P3HIGHCVSS 7.5v24v252017-12-05
CVE-2016-1254 [HIGH] CWE-119 CVE-2016-1254: Tor before 0.2.8.12 might allow remote attackers to cause a denial of service (client crash) via a c Tor before 0.2.8.12 might allow remote attackers to cause a denial of service (client crash) via a crafted hidden service descriptor.
nvd
CVE-2020-1971P3MEDIUMCVSS 5.9v32v332020-12-08
CVE-2020-1971 [MEDIUM] CWE-476 CVE-2020-1971: The X.509 GeneralName type is a generic type for representing different types of names. One of those The X.509 GeneralName type is a generic type for representing different types of names. One of those name types is known as EDIPartyName. OpenSSL provides a function GENERAL_NAME_cmp which compares different instances of a GENERAL_NAME to see if they are equal or not. This function behaves incorrectly when both GENERAL_NAMEs contain an EDIPARTYNAME. A
nvd
CVE-2022-21293P3MEDIUMCVSS 5.3v342022-01-19
CVE-2022-21293 [MEDIUM] CWE-400 CVE-2022-21293: Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (co Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via
nvd
CVE-2020-9430P3HIGHCVSS 7.5v30v31+1 more2020-02-27
CVE-2020-9430 [HIGH] CWE-20 CVE-2020-9430: In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the WiMax DLMAP dissector could cr In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the WiMax DLMAP dissector could crash. This was addressed in plugins/epan/wimax/msg_dlmap.c by validating a length field.
nvd
CVE-2020-7105P3HIGHCVSS 7.5v30v312020-01-16
CVE-2020-7105 [HIGH] CWE-476 CVE-2020-7105: async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a NULL pointer dereference becaus async.c and dict.c in libhiredis.a in hiredis through 0.14.0 allow a NULL pointer dereference because malloc return values are unchecked.
nvd
CVE-2020-9431P3HIGHCVSS 7.5v30v31+1 more2020-02-27
CVE-2020-9431 [HIGH] CWE-401 CVE-2020-9431: In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak m In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak memory. This was addressed in epan/dissectors/packet-lte-rrc.c by adjusting certain append operations.
nvd
CVE-2022-23094P3HIGHCVSS 7.5v34v352022-01-15
CVE-2022-23094 [HIGH] CWE-476 CVE-2022-23094: Libreswan 4.2 through 4.5 allows remote attackers to cause a denial of service (NULL pointer derefer Libreswan 4.2 through 4.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted IKEv1 packet because pluto/ikev1.c wrongly expects that a state object exists. This is fixed in 4.6.
nvd
CVE-2021-3404P3HIGHCVSS 7.8v332021-03-04
CVE-2021-3404 [HIGH] CWE-119 CVE-2021-3404: In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-se In ytnef 1.9.3, the SwapWord function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a heap buffer overflow which can be triggered via a crafted file.
nvd
Fedoraproject Fedora vulnerabilities | cvebase