cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 204 of 264
CVE-2022-0865P4MEDIUMCVSS 6.5v362022-03-10
CVE-2022-0865 [MEDIUM] CWE-617 CVE-2022-0865: Reachable Assertion in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a c Reachable Assertion in tiffcp in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 5e180045.
nvd
CVE-2021-3695P4MEDIUMCVSS 4.5v362022-07-06
CVE-2021-3695 [MEDIUM] CWE-787 CVE-2021-3695: A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker A crafted 16-bit grayscale PNG image may lead to a out-of-bounds write in the heap area. An attacker may take advantage of that to cause heap data corruption or eventually arbitrary code execution and circumvent secure boot protections. This issue has a high complexity to be exploited as an attacker needs to perform some triage over the heap layout to
nvd
CVE-2015-3420P4MEDIUMCVSS 5.9v20v21+1 more2017-09-19
CVE-2015-3420 [MEDIUM] CWE-295 CVE-2015-3420: The ssl-proxy-openssl.c function in Dovecot before 2.2.17, when SSLv3 is disabled, allow remote atta The ssl-proxy-openssl.c function in Dovecot before 2.2.17, when SSLv3 is disabled, allow remote attackers to cause a denial of service (login process crash) via vectors related to handshake failures.
nvd
CVE-2014-1682P4MEDIUMCVSS 4.0v19v202014-05-08
CVE-2014-1682 [MEDIUM] CWE-287 CVE-2014-1682: The API in Zabbix before 1.8.20rc1, 2.0.x before 2.0.11rc1, and 2.2.x before 2.2.2rc1 allows remote The API in Zabbix before 1.8.20rc1, 2.0.x before 2.0.11rc1, and 2.2.x before 2.2.2rc1 allows remote authenticated users to spoof arbitrary users via the user name in a user.login request.
nvd
CVE-2022-2058P4MEDIUMCVSS 6.5v35v362022-06-30
CVE-2022-2058 [MEDIUM] CWE-369 CVE-2022-2058: Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.
nvd
CVE-2011-1783P4MEDIUMCVSS 4.3v14v152011-06-06
CVE-2011-1783 [MEDIUM] CVE-2011-1783: The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6 The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is enabled, allows remote attackers to cause a denial of service (infinite loop and memory consumption) in opportunistic circumstances by requesting data.
nvd
CVE-2022-2056P4MEDIUMCVSS 6.5v35v362022-06-30
CVE-2022-2056 [MEDIUM] CWE-369 CVE-2022-2056: Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.
nvd
CVE-2022-2057P4MEDIUMCVSS 6.5v35v362022-06-30
CVE-2022-2057 [MEDIUM] CWE-369 CVE-2022-2057: Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via Divide By Zero error in tiffcrop in libtiff 4.4.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit f3a5e010.
nvd
CVE-2023-33460P4MEDIUMCVSS 6.5v37v382023-06-06
CVE-2023-33460 [MEDIUM] CWE-401 CVE-2023-33460: There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-me There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
nvd
CVE-2022-1789P4MEDIUMCVSS 6.8v34v35+1 more2022-06-02
CVE-2022-1789 [MEDIUM] CWE-476 CVE-2022-1789: With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INV With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference.
nvd
CVE-2014-9601P4MEDIUMCVSS 5.0v212015-01-16
CVE-2014-9601 [MEDIUM] CWE-20 CVE-2014-9601: Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
nvd
CVE-2015-7513P4MEDIUMCVSS 6.5v22v232016-02-08
CVE-2015-7513 [MEDIUM] CWE-369 CVE-2015-7513: arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and host OS crash) via a zero value, related to the kvm_vm_ioctl_set_pit and kvm_vm_ioctl_set_pit2 functions.
nvd
CVE-2018-19790P4MEDIUMCVSS 6.1v282018-12-18
CVE-2018-19790 [MEDIUM] CWE-601 CVE-2018-19790: An open redirect was discovered in Symfony 2.7.x before 2.7.50, 2.8.x before 2.8.49, 3.x before 3.4. An open redirect was discovered in Symfony 2.7.x before 2.7.50, 2.8.x before 2.8.49, 3.x before 3.4.20, 4.0.x before 4.0.15, 4.1.x before 4.1.9 and 4.2.x before 4.2.1. By using backslashes in the `_failure_path` input field of login forms, an attacker can work around the redirection target restrictions and effectively redirect the user to any domain
nvd
CVE-2022-28919P4MEDIUMCVSS 6.1v34v35+1 more2022-05-12
CVE-2022-28919 [MEDIUM] CWE-79 CVE-2022-28919: HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnera HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the function _generateFilename.
nvd
CVE-2020-15564P4MEDIUMCVSS 6.5v31v322020-07-07
CVE-2020-15564 [MEDIUM] CWE-119 CVE-2020-15564: An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor cra An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor crash because of a missing alignment check in VCPUOP_register_vcpu_info. The hypercall VCPUOP_register_vcpu_info is used by a guest to register a shared region with the hypervisor. The region will be mapped into Xen address space so it can be directly ac
nvd
CVE-2008-4989P4MEDIUMCVSS 5.9v8v92008-11-13
CVE-2008-4989 [MEDIUM] CWE-295 CVE-2008-4989: The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS before 2.6. The _gnutls_x509_verify_certificate function in lib/x509/verify.c in libgnutls in GnuTLS before 2.6.1 trusts certificate chains in which the last certificate is an arbitrary trusted, self-signed certificate, which allows man-in-the-middle attackers to insert a spoofed certificate for any Distinguished Name (DN).
nvd
CVE-2021-0089P4MEDIUMCVSS 6.5v33v342021-06-09
CVE-2021-0089 [MEDIUM] CWE-203 CVE-2021-0089: Observable response discrepancy in some Intel(R) Processors may allow an authorized user to potentia Observable response discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
nvd
CVE-2021-0086P4MEDIUMCVSS 6.5v33v342021-06-09
CVE-2021-0086 [MEDIUM] CWE-203 CVE-2021-0086: Observable response discrepancy in floating-point operations for some Intel(R) Processors may allow Observable response discrepancy in floating-point operations for some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
nvd
CVE-2012-4451P4MEDIUMCVSS 6.1v16v172020-01-03
CVE-2012-4451 [MEDIUM] CWE-79 CVE-2012-4451: Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remot Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\PubSubHubbub, (3) Log\Formatter\Xml, (4) Tag\Cloud\Decorator, (5) Uri, (6) View\Helper\HeadStyle, (7) View\Helper\Navigation\Sitemap, or (8) View\Helper\Place
nvd
CVE-2020-25597P4MEDIUMCVSS 6.5v312020-09-23
CVE-2020-25597 [MEDIUM] CWE-755 CVE-2020-25597: An issue was discovered in Xen through 4.14.x. There is mishandling of the constraint that once-vali An issue was discovered in Xen through 4.14.x. There is mishandling of the constraint that once-valid event channels may not turn invalid. Logic in the handling of event channel operations in Xen assumes that an event channel, once valid, will not become invalid over the life time of a guest. However, operations like the resetting of all event chann
nvd
Fedoraproject Fedora vulnerabilities | cvebase