cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 141 of 264
CVE-2022-29900P3MEDIUMCVSS 6.5v35v362022-07-12
CVE-2022-29900 [MEDIUM] CWE-212 CVE-2022-29900: Mis-trained branch predictions for return instructions may allow arbitrary speculative code executio Mis-trained branch predictions for return instructions may allow arbitrary speculative code execution under certain microarchitecture-dependent conditions.
nvd
CVE-2009-0115P3HIGHCVSS 7.8v9v102009-03-30
CVE-2009-0115 [HIGH] CWE-732 CVE-2009-0115: The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as use The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly other operating systems, uses world-writable permissions for the socket file (aka /var/run/multipathd.sock), which allows local users to send arbitrary commands to the multipath
nvd
CVE-2022-0367P3HIGHCVSS 7.8v352022-08-29
CVE-2022-0367 [HIGH] CWE-119 CVE-2022-0367: A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c. A heap-based buffer overflow flaw was found in libmodbus in function modbus_reply() in src/modbus.c.
nvd
CVE-2014-3219P3HIGHCVSS 7.8v192018-02-09
CVE-2014-3219 [HIGH] CWE-59 CVE-2014-3219: fish before 2.1.1 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/fi fish before 2.1.1 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/fishd.log.%s, (2) /tmp/.pac-cache.$USER, (3) /tmp/.yum-cache.$USER, or (4) /tmp/.rpm-cache.$USER.
nvd
CVE-2011-2520P3HIGHCVSS 7.8v152011-07-21
CVE-2011-2520 [HIGH] CWE-502 CVE-2011-2520: fw_dbus.py in system-config-firewall 1.2.29 and earlier uses the pickle Python module unsafely durin fw_dbus.py in system-config-firewall 1.2.29 and earlier uses the pickle Python module unsafely during D-Bus communication between the GUI and the backend, which might allow local users to gain privileges via a crafted serialized object.
nvd
CVE-2021-39251P3HIGHCVSS 7.8v33v352021-09-07
CVE-2021-39251 [HIGH] CWE-476 CVE-2021-39251: A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 202 A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 2021.8.22.
nvd
CVE-2022-24958P3HIGHCVSS 7.8v34v352022-02-11
CVE-2022-24958 [HIGH] CWE-763 CVE-2022-24958: drivers/usb/gadget/legacy/inode.c in the Linux kernel through 5.16.8 mishandles dev->buf release. drivers/usb/gadget/legacy/inode.c in the Linux kernel through 5.16.8 mishandles dev->buf release.
nvd
CVE-2014-7271P3HIGHCVSS 7.8v20v212018-03-08
CVE-2014-7271 [HIGH] CWE-306 CVE-2014-7271: Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to log in as user "sddm" with Simple Desktop Display Manager (SDDM) before 0.10.0 allows local users to log in as user "sddm" without authentication.
nvd
CVE-2024-4140P3HIGHCVSS 7.5v39v402024-05-02
CVE-2024-4140 [HIGH] CWE-770 CVE-2024-4140: An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME messages. The patch set (from 2020 and 2024) limits excessive depth and the total number of parts.
nvd
CVE-2020-6581P3HIGHCVSS 7.3v322020-03-16
CVE-2020-6581 [HIGH] CVE-2020-6581: Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \n newline sequence). This can cause command injection.
nvd
CVE-2020-27671P3HIGHCVSS 7.8v312020-10-22
CVE-2020-27671 [HIGH] CVE-2020-27671: An issue was discovered in Xen through 4.14.x allowing x86 HVM and PVH guest OS users to cause a den An issue was discovered in Xen through 4.14.x allowing x86 HVM and PVH guest OS users to cause a denial of service (data corruption), cause a data leak, or possibly gain privileges because coalescing of per-page IOMMU TLB flushes is mishandled.
nvd
CVE-2024-2002P3HIGHCVSS 7.5v402024-03-18
CVE-2024-2002 [HIGH] CWE-415 CVE-2024-2002: A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf ma A double-free vulnerability was found in libdwarf. In a multiply-corrupted DWARF object, libdwarf may try to dealloc(free) an allocation twice, potentially causing unpredictable and various results.
nvd
CVE-2019-5780P3HIGHCVSS 7.8v29v302019-02-19
CVE-2019-5780 [HIGH] CWE-20 CVE-2019-5780: Insufficient restrictions on what can be done with Apple Events in Google Chrome on macOS prior to 7 Insufficient restrictions on what can be done with Apple Events in Google Chrome on macOS prior to 72.0.3626.81 allowed a local attacker to execute JavaScript via Apple Events.
nvd
CVE-2023-3106P3HIGHCVSS 7.8v382023-07-12
CVE-2023-3106 [HIGH] CWE-476 CVE-2023-3106: A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Ne A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cann
nvd
CVE-2024-1622P3HIGHCVSS 7.5v38v39+1 more2024-02-26
CVE-2024-1622 [HIGH] CWE-253 CVE-2024-1622: Due to a mistake in error checking, Routinator will terminate when an incoming RTR connection is res Due to a mistake in error checking, Routinator will terminate when an incoming RTR connection is reset by the peer too quickly after opening.
nvd
CVE-2020-27670P3HIGHCVSS 7.8v312020-10-22
CVE-2020-27670 [HIGH] CWE-345 CVE-2020-27670: An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a denial of servi An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a denial of service (data corruption), cause a data leak, or possibly gain privileges because an AMD IOMMU page-table entry can be half-updated.
nvd
CVE-2020-15980P3HIGHCVSS 7.8v31v32+1 more2020-11-03
CVE-2020-15980 [HIGH] CVE-2020-15980: Insufficient policy enforcement in Intents in Google Chrome on Android prior to 86.0.4240.75 allowed Insufficient policy enforcement in Intents in Google Chrome on Android prior to 86.0.4240.75 allowed a local attacker to bypass navigation restrictions via crafted Intents.
nvd
CVE-2020-6546P3HIGHCVSS 7.8v332020-09-21
CVE-2020-6546 [HIGH] CWE-59 CVE-2020-6546: Inappropriate implementation in installer in Google Chrome prior to 84.0.4147.125 allowed a local at Inappropriate implementation in installer in Google Chrome prior to 84.0.4147.125 allowed a local attacker to potentially elevate privilege via a crafted filesystem.
nvd
CVE-2024-25978P3HIGHCVSS 7.5v382024-02-19
CVE-2024-25978 [HIGH] CWE-400 CVE-2024-25978: Insufficient file size checks resulted in a denial of service risk in the file picker's unzip functi Insufficient file size checks resulted in a denial of service risk in the file picker's unzip functionality.
nvd
CVE-2012-1170P3HIGHCVSS 7.5v15v16+1 more2019-11-14
CVE-2012-1170 [HIGH] CWE-354 CVE-2012-1170: Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough
nvd
Fedoraproject Fedora vulnerabilities | cvebase