Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 150 of 264
CVE-2024-32760P4MEDIUMCVSS 6.5v39v402024-05-29
CVE-2024-32760 [MEDIUM] CWE-787 CVE-2024-32760: When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 encode
When NGINX Plus or NGINX OSS are configured to use the HTTP/3 QUIC module, undisclosed HTTP/3 encoder instructions can cause NGINX worker processes to terminate or cause or other potential impact.
nvd
CVE-2019-13377P4MEDIUMCVSS 5.9v302019-08-15
CVE-2019-13377 [MEDIUM] CWE-203 CVE-2019-13377: The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable
The implementations of SAE and EAP-pwd in hostapd and wpa_supplicant 2.x through 2.8 are vulnerable to side-channel attacks as a result of observable timing differences and cache access patterns when Brainpool curves are used. An attacker may be able to gain leaked information from a side-channel attack that can be used for full password recovery.
nvd
CVE-2024-22421P3MEDIUMCVSS 6.5v392024-01-19
CVE-2024-22421 [MEDIUM] CWE-23 CVE-2024-22421: JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jup
JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Architecture. Users of JupyterLab who click on a malicious link may get their `Authorization` and `XSRFToken` tokens exposed to a third party when running an older `jupyter-server` version. JupyterLab versions 4.1.0b2, 4.0.11, and 3.6
nvd
CVE-2015-5258P4HIGHCVSS 8.8v232017-08-22
CVE-2015-5258 [HIGH] CWE-352 CVE-2015-5258: Cross-site request forgery (CSRF) vulnerability in springframework-social before 1.1.3.
Cross-site request forgery (CSRF) vulnerability in springframework-social before 1.1.3.
nvd
CVE-2015-3451P4MEDIUMCVSS 5.0v20v212015-05-12
CVE-2015-3451 [MEDIUM] CWE-611 CVE-2015-3451: The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, w
The _clone function in XML::LibXML before 2.0119 does not properly set the expand_entities option, which allows remote attackers to conduct XML external entity (XXE) attacks via crafted XML data to the (1) new or (2) load_xml function.
nvd
CVE-2019-18677P4MEDIUMCVSS 6.1v30v312019-11-26
CVE-2019-18677 [MEDIUM] CWE-352 CVE-2019-18677: An issue was discovered in Squid 3.x and 4.x through 4.8 when the append_domain setting is used (bec
An issue was discovered in Squid 3.x and 4.x through 4.8 when the append_domain setting is used (because the appended characters do not properly interact with hostname length restrictions). Due to incorrect message processing, it can inappropriately redirect traffic to origins it should not be delivered to.
nvd
CVE-2018-20191P4HIGHCVSS 7.5v29v302018-12-20
CVE-2018-20191 [HIGH] CWE-476 CVE-2018-20191: hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy t
hw/rdma/vmw/pvrdma_main.c in QEMU does not implement a read operation (such as uar_read by analogy to uar_write), which allows attackers to cause a denial of service (NULL pointer dereference).
nvd
CVE-2023-27536P4MEDIUMCVSS 5.9v362023-03-30
CVE-2023-27536 [MEDIUM] CWE-305 CVE-2023-27536: An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which c
An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result
nvd
CVE-2019-14870P3MEDIUMCVSS 5.4v30v312019-12-10
CVE-2019-14870 [MEDIUM] CWE-285 CVE-2019-14870: All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue
All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients t
nvd
CVE-2015-1783P4HIGHCVSS 7.5v20v21+1 more2017-08-11
CVE-2015-1783 [HIGH] CWE-119 CVE-2015-1783: The prefix variable in the get_or_define_ns function in Lasso before commit 6d854cef4211cdcdbc7446c9
The prefix variable in the get_or_define_ns function in Lasso before commit 6d854cef4211cdcdbc7446c978f23ab859847cdd allows remote attackers to cause a denial of service (uninitialized memory access and application crash) via unspecified vectors.
nvd
CVE-2020-3350P4MEDIUMCVSS 6.3v31v322020-06-18
CVE-2020-3350 [MEDIUM] CWE-362 CVE-2020-3350: A vulnerability in the endpoint software of Cisco AMP for Endpoints and Clam AntiVirus could allow a
A vulnerability in the endpoint software of Cisco AMP for Endpoints and Clam AntiVirus could allow an authenticated, local attacker to cause the running software to delete arbitrary files on the system. The vulnerability is due to a race condition that could occur when scanning malicious files. An attacker with local shell access could exploit this vu
nvd
CVE-2021-30615P3MEDIUMCVSS 6.5v352021-09-03
CVE-2021-30615 [MEDIUM] CVE-2021-30615: Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
nvd
CVE-2015-3152P3MEDIUMCVSS 5.9v21v222016-05-16
CVE-2015-3152 [MEDIUM] CWE-295 CVE-2015-3152: Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB b
Oracle MySQL before 5.7.3, Oracle MySQL Connector/C (aka libmysqlclient) before 6.1.3, and MariaDB before 5.5.44 use the --ssl option to mean that SSL is optional, which allows man-in-the-middle attackers to spoof servers via a cleartext-downgrade attack, aka a "BACKRONYM" attack.
nvd
CVE-2009-0040P4MEDIUMCVSS 6.8v9v102009-02-22
CVE-2009-0040 [MEDIUM] CWE-824 CVE-2009-0040: The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush a
The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush and other applications, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file that triggers a free of an uninitialized pointer in (1) the png_read_png function, (2) p
nvd
CVE-2016-7946P4HIGHCVSS 7.5v24v252016-12-13
CVE-2016-7946 [HIGH] CWE-284 CVE-2016-7946: X.org libXi before 1.7.7 allows remote X servers to cause a denial of service (infinite loop) via ve
X.org libXi before 1.7.7 allows remote X servers to cause a denial of service (infinite loop) via vectors involving length fields.
nvd
CVE-2016-7945P4HIGHCVSS 7.5v24v252016-12-13
CVE-2016-7945 [HIGH] CWE-125 CVE-2016-7945: Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of s
Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite loop) via vectors involving length fields.
nvd
CVE-2021-30582P4MEDIUMCVSS 6.5v33v34+1 more2021-08-03
CVE-2021-30582 [MEDIUM] CVE-2021-30582: Inappropriate implementation in Animation in Google Chrome prior to 92.0.4515.107 allowed a remote a
Inappropriate implementation in Animation in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
nvd
CVE-2016-2039P4MEDIUMCVSS 5.3v23v242016-02-20
CVE-2016-2039 [MEDIUM] CWE-200 CVE-2016-2039: libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x bef
libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass intended access restrictions by predicting a value.
nvd
CVE-2019-19070P4HIGHCVSS 7.5v30v312019-11-18
CVE-2019-19070 [HIGH] CWE-401 CVE-2019-19070: A memory leak in the spi_gpio_probe() function in drivers/spi/spi-gpio.c in the Linux kernel through
A memory leak in the spi_gpio_probe() function in drivers/spi/spi-gpio.c in the Linux kernel through 5.3.11 allows attackers to cause a denial of service (memory consumption) by triggering devm_add_action_or_reset() failures, aka CID-d3b0ffa1d75d. NOTE: third parties dispute the relevance of this because the system must have already been out of memory
nvd
CVE-2018-17847P4HIGHCVSS 7.5v28v292018-10-01
CVE-2018-17847 [HIGH] CWE-119 CVE-2018-17847: The html package (aka x/net/html) through 2018-09-25 in Go mishandles <svg><template><desc><t><svg><
The html package (aka x/net/html) through 2018-09-25 in Go mishandles , leading to a "panic: runtime error" (index out of range) in (*nodeStack).pop in node.go, called from (*parser).clearActiveFormattingElements, during an html.Parse call.
nvd