Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 197 of 264
CVE-2023-4359P4MEDIUMCVSS 5.3v382023-08-15
CVE-2023-4359 [MEDIUM] CVE-2023-4359: Inappropriate implementation in App Launcher in Google Chrome on iOS prior to 116.0.5845.96 allowed
Inappropriate implementation in App Launcher in Google Chrome on iOS prior to 116.0.5845.96 allowed a remote attacker to potentially spoof elements of the security UI via a crafted HTML page. (Chromium security severity: Medium)
nvd
CVE-2022-3560P4MEDIUMCVSS 5.5v36v372023-02-02
CVE-2022-3560 [MEDIUM] CWE-22 CVE-2022-3560: A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign d
A flaw was found in pesign. The pesign package provides a systemd service used to start the pesign daemon. This service unit runs a script to set ACLs for /etc/pki/pesign and /run/pesign directories to grant access privileges to users in the 'pesign' group. However, the script doesn't check for symbolic links. This could allow an attacker to gain acces
nvd
CVE-2023-34410P4MEDIUMCVSS 5.3v382023-06-05
CVE-2023-34410 [MEDIUM] CWE-295 CVE-2023-34410: An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2
An issue was discovered in Qt before 5.15.15, 6.x before 6.2.9, and 6.3.x through 6.5.x before 6.5.2. Certificate validation for TLS does not always consider whether the root of a chain is a configured CA certificate.
nvd
CVE-2022-45149P4MEDIUMCVSS 5.4v35v36+1 more2022-11-23
CVE-2022-45149 [MEDIUM] CWE-352 CVE-2022-45149: A vulnerability was found in Moodle which exists due to insufficient validation of the HTTP request
A vulnerability was found in Moodle which exists due to insufficient validation of the HTTP request origin in course redirect URL. A user's CSRF token was unnecessarily included in the URL when being redirected to a course they have just restored. A remote attacker can trick the victim to visit a specially crafted web page and perform arbitrary actio
nvd
CVE-2024-25981P4MEDIUMCVSS 5.3v382024-02-19
CVE-2024-25981 [MEDIUM] CWE-284 CVE-2024-25981: Separate Groups mode restrictions were not honored when performing a forum export, which would expor
Separate Groups mode restrictions were not honored when performing a forum export, which would export forum data for all groups. By default this only provided additional access to non-editing teachers.
nvd
CVE-2024-25980P4MEDIUMCVSS 5.3v382024-02-19
CVE-2024-25980 [MEDIUM] CWE-284 CVE-2024-25980: Separate Groups mode restrictions were not honored in the H5P attempts report, which would display u
Separate Groups mode restrictions were not honored in the H5P attempts report, which would display users from other groups. By default this only provided additional access to non-editing teachers.
nvd
CVE-2024-38277P4MEDIUMCVSS 5.4v39v402024-06-18
CVE-2024-38277 [MEDIUM] CWE-324 CVE-2024-38277: A unique key should be generated for a user's QR login key and their auto-login key, so the same key
A unique key should be generated for a user's QR login key and their auto-login key, so the same key cannot be used interchangeably between the two.
nvd
CVE-2017-6313P4HIGHCVSS 7.1v30v312017-03-10
CVE-2017-6313 [HIGH] CWE-191 CVE-2017-6313: Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent
Integer underflow in the load_resources function in io-icns.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (out-of-bounds read and program crash) via a crafted image entry size in an ICO file.
nvd
CVE-2020-27674P4MEDIUMCVSS 5.3v31v32+1 more2020-10-22
CVE-2020-27674 [MEDIUM] CWE-787 CVE-2020-27674: An issue was discovered in Xen through 4.14.x allowing x86 PV guest OS users to gain guest OS privil
An issue was discovered in Xen through 4.14.x allowing x86 PV guest OS users to gain guest OS privileges by modifying kernel memory contents, because invalidation of TLB entries is mishandled during use of an INVLPG-like attack technique.
nvd
CVE-2022-27652P4MEDIUMCVSS 5.3v352022-04-18
CVE-2022-27652 [MEDIUM] CWE-276 CVE-2022-27652: A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissi
A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers started incorrectly with non-empty inheritable Linux process capabilities. This flaw allows an attacker with access to programs with inheritable file capabilities to elevate those
nvd
CVE-2014-1523P4MEDIUMCVSS 6.5v19v202014-04-30
CVE-2014-1523 [MEDIUM] CWE-787 CVE-2014-1523: Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x
Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image.
nvd
CVE-2020-24119P4HIGHCVSS 7.1v33v342021-05-14
CVE-2020-24119 [HIGH] CWE-125 CVE-2020-24119: A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not pe
A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not perfect.
nvd
CVE-2022-0521P4HIGHCVSS 7.1v35v362022-02-08
CVE-2022-0521 [HIGH] CWE-788 CVE-2022-0521: Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.
Access of Memory Location After End of Buffer in GitHub repository radareorg/radare2 prior to 5.6.2.
nvd
CVE-2007-1321P4HIGHCVSS 7.2v72007-10-30
CVE-2007-1321 [HIGH] CVE-2007-1321: Integer signedness error in the NE2000 emulator in QEMU 0.8.2, as used in Xen and possibly other pro
Integer signedness error in the NE2000 emulator in QEMU 0.8.2, as used in Xen and possibly other products, allows local users to trigger a heap-based buffer overflow via certain register values that bypass sanity checks, aka QEMU NE2000 "receive" integer signedness error. NOTE: this identifier was inadvertently used by some sources to cover multiple issues that
nvd
CVE-2015-4819P4HIGHCVSS 7.2v232015-10-21
CVE-2015-4819 [HIGH] CVE-2015-4819: Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier, and 5.6.25 and earlier, allows
Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier, and 5.6.25 and earlier, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Client programs.
nvd
CVE-2019-11474P4MEDIUMCVSS 6.5v29v302019-04-23
CVE-2019-11474 [MEDIUM] CVE-2019-11474: coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point
coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.
nvd
CVE-2014-3499P4HIGHCVSS 7.2v19v202014-07-11
CVE-2014-3499 [HIGH] CWE-264 CVE-2014-3499: Docker 1.0.0 uses world-readable and world-writable permissions on the management socket, which allo
Docker 1.0.0 uses world-readable and world-writable permissions on the management socket, which allows local users to gain privileges via unspecified vectors.
nvd
CVE-2015-0247P4MEDIUMCVSS 4.6v20v212015-02-17
CVE-2015-0247 [MEDIUM] CWE-119 CVE-2015-0247: Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows l
Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs before 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.
nvd
CVE-2019-13114P4MEDIUMCVSS 6.5v302019-06-30
CVE-2019-13114 [MEDIUM] CWE-476 CVE-2019-13114: http.c in Exiv2 through 0.27.1 allows a malicious http server to cause a denial of service (crash du
http.c in Exiv2 through 0.27.1 allows a malicious http server to cause a denial of service (crash due to a NULL pointer dereference) by returning a crafted response that lacks a space character.
nvd
CVE-2019-13225P4MEDIUMCVSS 6.5v29v302019-07-10
CVE-2019-13225 [MEDIUM] CWE-476 CVE-2019-13225: A NULL Pointer Dereference in match_at() in regexec.c in Oniguruma 6.9.2 allows attackers to potenti
A NULL Pointer Dereference in match_at() in regexec.c in Oniguruma 6.9.2 allows attackers to potentially cause denial of service by providing a crafted regular expression. Oniguruma issues often affect Ruby, as well as common optional libraries for PHP and Rust.
nvd