cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 144 of 264
CVE-2010-3705P4HIGHCVSS 8.3v132010-11-26
CVE-2010-3705 [HIGH] CWE-400 CVE-2010-3705: The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not p The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a crafted value in the last element of this array.
nvd
CVE-2021-3979P3MEDIUMCVSS 6.5v35v372022-08-25
CVE-2021-3979 [MEDIUM] CWE-327 CVE-2021-3979: A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key l A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key length is incorrectly passed in an encryption algorithm to create a non random key, which is weaker and can be exploited for loss of confidentiality and integrity on encrypted disks.
nvd
CVE-2022-36109P3MEDIUMCVSS 6.3v36v372022-09-09
CVE-2022-36109 [MEDIUM] CWE-863 CVE-2022-36109: Moby is an open-source project created by Docker to enable software containerization. A bug was foun Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where supplementary groups are not set up properly. If an attacker has direct access to a container and manipulates their supplementary group access, they may be able to use supplementary group access to bypass primary group
nvd
CVE-2022-25600P4HIGHCVSS 8.8v34v35+1 more2022-03-11
CVE-2022-25600 [HIGH] CWE-352 CVE-2022-25600: Cross-Site Request Forgery (CSRF) vulnerability affecting Delete Marker Category, Delete Map, and Co Cross-Site Request Forgery (CSRF) vulnerability affecting Delete Marker Category, Delete Map, and Copy Map functions in WP Google Map plugin (versions <= 4.2.3).
nvd
CVE-2016-1526P4HIGHCVSS 8.1v22v232016-02-13
CVE-2016-1526 [HIGH] CWE-119 CVE-2016-1526: The TtfUtil:LocaLookup function in TtfUtil.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozill The TtfUtil:LocaLookup function in TtfUtil.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, incorrectly validates a size value, which allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and application crash) via a crafted Graphite smar
nvd
CVE-2010-4168P4HIGHCVSS 7.5v13v142010-11-17
CVE-2010-4168 [HIGH] CWE-416 CVE-2010-4168: Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to network/network_server.cpp; (2) remote attackers to cause a denial of service (invalid read and daemon crash) by
nvd
CVE-2023-27535P3MEDIUMCVSS 5.9v362023-03-30
CVE-2023-27535 [MEDIUM] CWE-305 CVE-2023-27535: An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if they match the current setup. However, certain FTP settings such as CURLOPT_FTP_ACCOUNT, CURLOPT_FTP_
nvd
CVE-2016-9397P4HIGHCVSS 7.5v32v332017-03-23
CVE-2016-9397 [HIGH] CWE-617 CVE-2016-9397: The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows remote attackers to cause a denia The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.
nvd
CVE-2015-7205P4CRITICALCVSS 10.0v22v232015-12-16
CVE-2015-7205 [CRITICAL] CWE-189 CVE-2015-7205: Integer underflow in the RTPReceiverVideo::ParseRtpPacket function in Mozilla Firefox before 43.0 an Integer underflow in the RTPReceiverVideo::ParseRtpPacket function in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 might allow remote attackers to obtain sensitive information, cause a denial of service, or possibly have unspecified other impact by triggering a crafted WebRTC RTP packet.
nvd
CVE-2016-5391P4HIGHCVSS 7.5v23v242017-06-13
CVE-2016-5391 [HIGH] CWE-476 CVE-2016-5391: libreswan before 3.18 allows remote attackers to cause a denial of service (NULL pointer dereference libreswan before 3.18 allows remote attackers to cause a denial of service (NULL pointer dereference and pluto daemon restart).
nvd
CVE-2019-7310P4HIGHCVSS 7.8v282019-02-03
CVE-2019-7310 [HIGH] CWE-125 CVE-2019-7310: In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::ge In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document, as demonstrated by pdftocairo.
nvd
CVE-2016-4414P3HIGHCVSS 7.5v22v23+1 more2016-06-13
CVE-2016-4414 [HIGH] CVE-2016-4414: The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attacker The onReadyRead function in core/coreauthhandler.cpp in Quassel before 0.12.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via invalid handshake data.
nvd
CVE-2018-17075P4HIGHCVSS 7.5v28v292018-09-16
CVE-2018-17075 [HIGH] CWE-476 CVE-2018-17075: The html package (aka x/net/html) before 2018-07-13 in Go mishandles "in frameset" insertion mode, l The html package (aka x/net/html) before 2018-07-13 in Go mishandles "in frameset" insertion mode, leading to a "panic: runtime error" for html.Parse of , , or . This is related to HTMLTreeBuilder.cpp in WebKit.
nvd
CVE-2021-34555P4HIGHCVSS 7.5v33v342021-06-10
CVE-2021-34555 [HIGH] CWE-476 CVE-2021-34555: OpenDMARC 1.4.1 and 1.4.1.1 allows remote attackers to cause a denial of service (NULL pointer deref OpenDMARC 1.4.1 and 1.4.1.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a multi-value From header field.
nvd
CVE-2019-14494P4HIGHCVSS 7.5v30v312019-08-01
CVE-2019-14494 [HIGH] CWE-369 CVE-2019-14494: An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function S An issue was discovered in Poppler through 0.78.0. There is a divide-by-zero error in the function SplashOutputDev::tilingPatternFill at SplashOutputDev.cc.
nvd
CVE-2018-17846P4HIGHCVSS 7.5v28v292018-10-01
CVE-2018-17846 [HIGH] CWE-835 CVE-2018-17846: The html package (aka x/net/html) through 2018-09-25 in Go mishandles <table><math><select><mi><sele The html package (aka x/net/html) through 2018-09-25 in Go mishandles , leading to an infinite loop during an html.Parse call because inSelectIM and inSelectInTableIM do not comply with a specification.
nvd
CVE-2007-5000P4MEDIUMCVSS 4.3v7v82007-12-13
CVE-2007-5000 [MEDIUM] CWE-79 CVE-2007-5000: Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0 Cross-site scripting (XSS) vulnerability in the (1) mod_imap module in the Apache HTTP Server 1.3.0 through 1.3.39 and 2.0.35 through 2.0.61 and the (2) mod_imagemap module in the Apache HTTP Server 2.2.0 through 2.2.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
nvd
CVE-2021-36386P4HIGHCVSS 7.5v33v342021-07-30
CVE-2021-36386 [HIGH] CWE-909 CVE-2021-36386: report_vbuild in report.c in Fetchmail before 6.4.20 sometimes omits initialization of the vsnprintf report_vbuild in report.c in Fetchmail before 6.4.20 sometimes omits initialization of the vsnprintf va_list argument, which might allow mail servers to cause a denial of service or possibly have unspecified other impact via long error messages. NOTE: it is unclear whether use of Fetchmail on any realistic platform results in an impact beyond an incon
nvd
CVE-2020-10675P4HIGHCVSS 7.5v31v322020-03-19
CVE-2020-10675 [HIGH] CWE-835 CVE-2020-10675: The Library API in buger jsonparser through 2019-12-04 allows attackers to cause a denial of service The Library API in buger jsonparser through 2019-12-04 allows attackers to cause a denial of service (infinite loop) via a Delete call.
nvd
CVE-2021-30511P4HIGHCVSS 8.1v33v342021-06-04
CVE-2021-30511 [HIGH] CWE-125 CVE-2021-30511: Out of bounds read in Tab Groups in Google Chrome prior to 90.0.4430.212 allowed an attacker who con Out of bounds read in Tab Groups in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page.
nvd
Fedoraproject Fedora vulnerabilities | cvebase