Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 168 of 264
CVE-2020-25658P4MEDIUMCVSS 5.9v33v34+1 more2020-11-12
CVE-2020-25658 [MEDIUM] CWE-385 CVE-2020-25658: It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use thi
It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption API to decrypt parts of the cipher text encrypted with RSA.
nvd
CVE-2022-2164P4MEDIUMCVSS 6.3v35v362022-07-28
CVE-2022-2164 [MEDIUM] CVE-2022-2164: Inappropriate implementation in Extensions API in Google Chrome prior to 103.0.5060.53 allowed an at
Inappropriate implementation in Extensions API in Google Chrome prior to 103.0.5060.53 allowed an attacker who convinced a user to install a malicious extension to bypass discretionary access control via a crafted HTML page.
nvd
CVE-2020-25651P4MEDIUMCVSS 6.4v32v332020-11-26
CVE-2020-25651 [MEDIUM] CWE-362 CVE-2020-25651: A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in f
A flaw was found in the SPICE file transfer protocol. File data from the host system can end up in full or in parts in the client connection of an illegitimate local user in the VM system. Active file transfers from other users could also be interrupted, resulting in a denial of service. The highest threat from this vulnerability is to data confiden
nvd
CVE-2017-6311P4HIGHCVSS 7.5v30v312017-03-10
CVE-2017-6311 [HIGH] CWE-476 CVE-2017-6311: gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attackers to cause a denial of servi
gdk-pixbuf-thumbnailer.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to printing an error message.
nvd
CVE-2022-21291P4MEDIUMCVSS 5.3v342022-01-19
CVE-2022-21291 [MEDIUM] CWE-284 CVE-2022-21291: Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (co
Vulnerability in the Oracle Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Hotspot). Supported versions that are affected are Oracle Java SE: 7u321, 8u311, 11.0.13, 17.0.1; Oracle GraalVM Enterprise Edition: 20.3.4 and 21.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via m
nvd
CVE-2021-3426P4MEDIUMCVSS 5.7v32v33+1 more2021-05-20
CVE-2021-3426 [MEDIUM] CWE-200 CVE-2021-3426: There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convinc
There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or adjacent user to start a pydoc server could access the server and use it to disclose sensitive information belonging to the other user that they would not normally be able to access. The highest risk of this flaw is to data confidenti
nvd
CVE-2019-12449P4MEDIUMCVSS 5.7v29v302019-05-29
CVE-2019-12449 [MEDIUM] CWE-755 CVE-2019-12449: An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles a
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles a file's user and group ownership during move (and copy with G_FILE_COPY_ALL_METADATA) operations from admin:// to file:// URIs, because root privileges are unavailable.
nvd
CVE-2021-39218P4MEDIUMCVSS 6.3v34v352021-09-17
CVE-2021-39218 [MEDIUM] CWE-125 CVE-2021-39218: Wasmtime is an open source runtime for WebAssembly & WASI. In Wasmtime from version 0.26.0 and befor
Wasmtime is an open source runtime for WebAssembly & WASI. In Wasmtime from version 0.26.0 and before version 0.30.0 is affected by a memory unsoundness vulnerability. There was an invalid free and out-of-bounds read and write bug when running Wasm that uses `externref`s in Wasmtime. To trigger this bug, Wasmtime needs to be running Wasm that uses `
nvd
CVE-2021-45452P4MEDIUMCVSS 5.3v352022-01-05
CVE-2021-45452 [MEDIUM] CWE-22 CVE-2021-45452: Storage.save in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1 allows directory t
Storage.save in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1 allows directory traversal if crafted filenames are directly passed to it.
nvd
CVE-2019-14833P4MEDIUMCVSS 5.4v29v30+1 more2019-11-06
CVE-2019-14833 [MEDIUM] CWE-305 CVE-2019-14833: A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, sam
A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the way it handles a user password change or a new password for a samba user. The Samba Active Directory Domain Controller can be configured to use a custom script to check for password complexity. This configuration can fail to verify p
nvd
CVE-2014-9664P4MEDIUMCVSS 6.8v20v212015-02-08
CVE-2014-9664 [MEDIUM] CWE-119 CVE-2014-9664: FreeType before 2.5.4 does not check for the end of the data during certain parsing actions, which a
FreeType before 2.5.4 does not check for the end of the data during certain parsing actions, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted Type42 font, related to type42/t42parse.c and type1/t1load.c.
nvd
CVE-2014-9666P4MEDIUMCVSS 6.8v20v212015-02-08
CVE-2014-9666 [MEDIUM] CWE-189 CVE-2014-9666: The tt_sbit_decoder_init function in sfnt/ttsbit.c in FreeType before 2.5.4 proceeds with a count-to
The tt_sbit_decoder_init function in sfnt/ttsbit.c in FreeType before 2.5.4 proceeds with a count-to-size association without restricting the count value, which allows remote attackers to cause a denial of service (integer overflow and out-of-bounds read) or possibly have unspecified other impact via a crafted embedded bitmap.
nvd
CVE-2022-39347P4MEDIUMCVSS 5.7v36v372022-11-16
CVE-2022-39347 [MEDIUM] CWE-22 CVE-2022-39347: FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are miss
FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing path canonicalization and base path check for `drive` channel. A malicious server can trick a FreeRDP based client to read files outside the shared directory. This issue has been addressed in version 2.9.0 and all users are advised to upgrade. User
nvd
CVE-2021-32678P4MEDIUMCVSS 5.3v33v342021-07-12
CVE-2021-32678 [MEDIUM] CWE-799 CVE-2021-32678: Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.
Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.0.11, and 21.0.3, ratelimits are not applied to OCS API responses. This affects any OCS API controller (`OCSController`) using the `@BruteForceProtection` annotation. Risk depends on the installed applications on the Nextcloud Server, but could range
nvd
CVE-2024-22049P4MEDIUMCVSS 5.3v38v392024-01-04
CVE-2024-22049 [MEDIUM] CWE-472 CVE-2024-22049: httparty before 0.21.0 is vulnerable to an assumed-immutable web parameter vulnerability. A remote a
httparty before 0.21.0 is vulnerable to an assumed-immutable web parameter vulnerability. A remote and unauthenticated attacker can provide a crafted filename parameter during multipart/form-data uploads which could result in attacker controlled filenames being written.
nvd
CVE-2021-42613P4HIGHCVSS 7.8v352022-05-24
CVE-2021-42613 [HIGH] CWE-415 CVE-2021-42613: A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of ser
A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of service or possibly have other unspecified impact via a crafted text document.
nvd
CVE-2022-39832P4HIGHCVSS 7.8v36v372022-09-05
CVE-2022-39832 [HIGH] CWE-787 CVE-2022-39832: An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_st
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
nvd
CVE-2023-1127P4HIGHCVSS 7.8v372023-03-01
CVE-2023-1127 [HIGH] CWE-369 CVE-2023-1127: Divide By Zero in GitHub repository vim/vim prior to 9.0.1367.
Divide By Zero in GitHub repository vim/vim prior to 9.0.1367.
nvd
CVE-2009-3620P4HIGHCVSS 7.8v102009-10-22
CVE-2009-3620 [HIGH] CWE-476 CVE-2009-3620: The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly verify
The ATI Rage 128 (aka r128) driver in the Linux kernel before 2.6.31-git11 does not properly verify Concurrent Command Engine (CCE) state initialization, which allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly gain privileges via unspecified ioctl calls.
nvd
CVE-2019-15237P4HIGHCVSS 7.4v292019-08-20
CVE-2019-15237 [HIGH] CVE-2019-15237: Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks.
Roundcube Webmail through 1.3.9 mishandles Punycode xn-- domain names, leading to homograph attacks.
nvd