Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 151 of 264
CVE-2018-17848P4HIGHCVSS 7.5v28v292018-10-01
CVE-2018-17848 [HIGH] CWE-129 CVE-2018-17848: The html package (aka x/net/html) through 2018-09-25 in Go mishandles <math><template><mn><b></templ
The html package (aka x/net/html) through 2018-09-25 in Go mishandles , leading to a "panic: runtime error" (index out of range) in (*insertionModeStack).pop in node.go, called from inHeadIM, during an html.Parse call.
nvd
CVE-2015-8853P3HIGHCVSS 7.5v222016-05-25
CVE-2015-8853 [HIGH] CWE-20 CVE-2015-8853: The (1) S_reghop3, (2) S_reghop4, and (3) S_reghopmaybe3 functions in regexec.c in Perl before 5.24.
The (1) S_reghop3, (2) S_reghop4, and (3) S_reghopmaybe3 functions in regexec.c in Perl before 5.24.0 allow context-dependent attackers to cause a denial of service (infinite loop) via crafted utf-8 data, as demonstrated by "a\x80."
nvd
CVE-2015-7222P4MEDIUMCVSS 6.8v22v232015-12-16
CVE-2015-7222 [MEDIUM] CWE-189 CVE-2015-7222: Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Fir
Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect memory allocation and application crash) via an MP4 video file with crafted covr metadata that triggers a buffer
nvd
CVE-2021-3403P4HIGHCVSS 7.8v332021-03-04
CVE-2021-3403 [HIGH] CWE-416 CVE-2021-3403: In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a de
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
nvd
CVE-2019-19647P4HIGHCVSS 7.8v30v312019-12-09
CVE-2019-19647 [HIGH] CWE-476 CVE-2019-19647: radare2 through 4.0.0 lacks validation of the content variable in the function r_asm_pseudo_incbin a
radare2 through 4.0.0 lacks validation of the content variable in the function r_asm_pseudo_incbin at libr/asm/asm.c, ultimately leading to an arbitrary write. This allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted input.
nvd
CVE-2016-7952P4HIGHCVSS 7.5v24v252016-12-13
CVE-2016-7952 [HIGH] CWE-20 CVE-2016-7952: X.org libXtst before 1.2.3 allows remote X servers to cause a denial of service (infinite loop) via
X.org libXtst before 1.2.3 allows remote X servers to cause a denial of service (infinite loop) via a reply in the (1) XRecordStartOfData, (2) XRecordEndOfData, or (3) XRecordClientDied category without a client sequence and with attached data.
nvd
CVE-2020-35381P4HIGHCVSS 7.5v32v332020-12-15
CVE-2020-35381 [HIGH] CVE-2020-35381: jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds o
jsonparser 1.0.0 allows attackers to cause a denial of service (panic: runtime error: slice bounds out of range) via a GET call.
nvd
CVE-2022-2183P4HIGHCVSS 7.8v35v362022-06-23
CVE-2022-2183 [HIGH] CWE-125 CVE-2022-2183: Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.
nvd
CVE-2022-2257P4HIGHCVSS 7.8v35v362022-06-30
CVE-2022-2257 [HIGH] CWE-125 CVE-2022-2257: Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
nvd
CVE-2019-11412P4HIGHCVSS 7.5v31v32+1 more2019-04-22
CVE-2019-11412 [HIGH] CWE-670 CVE-2019-11412: An issue was discovered in Artifex MuJS 1.0.5. jscompile.c can cause a denial of service (invalid st
An issue was discovered in Artifex MuJS 1.0.5. jscompile.c can cause a denial of service (invalid stack-frame jump) because it lacks an ENDTRY opcode call.
nvd
CVE-2022-2286P4HIGHCVSS 7.8v35v362022-07-02
CVE-2022-2286 [HIGH] CWE-125 CVE-2022-2286: Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
Out-of-bounds Read in GitHub repository vim/vim prior to 9.0.
nvd
CVE-2022-2175P4HIGHCVSS 7.8v35v362022-06-23
CVE-2022-2175 [HIGH] CWE-126 CVE-2022-2175: Buffer Over-read in GitHub repository vim/vim prior to 8.2.
Buffer Over-read in GitHub repository vim/vim prior to 8.2.
nvd
CVE-2015-0844P4MEDIUMCVSS 5.0v20v21+1 more2015-04-14
CVE-2015-0844 [MEDIUM] CWE-200 CVE-2015-0844: The WML/Lua API in Battle for Wesnoth 1.7.x through 1.11.x and 1.12.x before 1.12.2 allows remote at
The WML/Lua API in Battle for Wesnoth 1.7.x through 1.11.x and 1.12.x before 1.12.2 allows remote attackers to read arbitrary files via a crafted (1) campaign or (2) map file.
nvd
CVE-2019-8383P4HIGHCVSS 7.8v302019-02-17
CVE-2019-8383 [HIGH] CWE-119 CVE-2019-8383: An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function
An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function adv_png_unfilter_8 in lib/png.c. It can be triggered by sending a crafted file to a binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact when a victim opens a specially crafted file.
nvd
CVE-2021-30500P4HIGHCVSS 7.8v332021-05-27
CVE-2021-30500 [HIGH] CWE-476 CVE-2021-30500: Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4
Null pointer dereference was found in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp,in version UPX 4.0.0. That allow attackers to execute arbitrary code and cause a denial of service via a crafted file.
nvd
CVE-2019-12957P4HIGHCVSS 7.8v30v31+1 more2019-06-25
CVE-2019-12957 [HIGH] CWE-125 CVE-2019-12957: In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiTyp
In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the charset array bounds. It can, for example, be triggered by sending a crafted PDF document to the pdftops tool. It allows an attacker to use a crafted pdf file to cause Denial of Service or an information l
nvd
CVE-2019-19630P4HIGHCVSS 7.8v30v312019-12-08
CVE-2019-19630 [HIGH] CWE-787 CVE-2019-19630: HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when ca
HTMLDOC 1.9.7 allows a stack-based buffer overflow in the hd_strlcpy() function in string.c (when called from render_contents in ps-pdf.cxx) via a crafted HTML document.
nvd
CVE-2020-10379P4HIGHCVSS 7.8v31v322020-06-25
CVE-2020-10379 [HIGH] CWE-120 CVE-2020-10379: In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
In Pillow before 7.1.0, there are two Buffer Overflows in libImaging/TiffDecode.c.
nvd
CVE-2022-27942P4HIGHCVSS 7.8v35v36+1 more2022-03-26
CVE-2022-27942 [HIGH] CWE-125 CVE-2022-27942: tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c.
tcpprep in Tcpreplay 4.4.1 has a heap-based buffer over-read in parse_mpls in common/get.c.
nvd
CVE-2022-27941P4HIGHCVSS 7.8v35v36+1 more2022-03-26
CVE-2022-27941 [HIGH] CWE-125 CVE-2022-27941: tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.
tcprewrite in Tcpreplay 4.4.1 has a heap-based buffer over-read in get_l2len_protocol in common/get.c.
nvd