Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 206 of 264
CVE-2020-26420P4MEDIUMCVSS 5.3v32v332020-12-11
CVE-2020-26420 [MEDIUM] CWE-401 CVE-2020-26420: Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of servic
Memory leak in RTPS protocol dissector in Wireshark 3.4.0 and 3.2.0 to 3.2.8 allows denial of service via packet injection or crafted capture file.
nvd
CVE-2023-22911P4MEDIUMCVSS 6.1v372023-01-10
CVE-2023-22911 [MEDIUM] CWE-79 CVE-2023-22911: An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. E-Widgets does widget replacement in HTML attributes, which can lead to XSS, because widget authors often do not expect that their widget is executed in an HTML attribute context.
nvd
CVE-2019-6454P4MEDIUMCVSS 5.5v292019-03-21
CVE-2019-6454 [MEDIUM] CWE-787 CVE-2019-6454: An issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-obje
An issue was discovered in sd-bus in systemd 239. bus_process_object() in libsystemd/sd-bus/bus-objects.c allocates a variable-length stack buffer for temporarily storing the object path of incoming D-Bus messages. An unprivileged local user can exploit this by sending a specially crafted message to PID1, causing the stack pointer to jump over the sta
nvd
CVE-2020-27171P4MEDIUMCVSS 6.0v32v33+1 more2021-03-20
CVE-2020-27171 [MEDIUM] CWE-193 CVE-2020-27171: An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one e
An issue was discovered in the Linux kernel before 5.11.8. kernel/bpf/verifier.c has an off-by-one error (with a resultant integer underflow) affecting out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory, aka CID-10d2bb2e6b1d.
nvd
CVE-2020-25211P4MEDIUMCVSS 6.0v31v322020-09-09
CVE-2020-25211 [MEDIUM] CWE-120 CVE-2020-25211: In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration co
In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local buffer, causing crashes or triggering use of incorrect protocol numbers in ctnetlink_parse_tuple_filter in net/netfilter/nf_conntrack_netlink.c, aka CID-1cc5ef91d2ff.
nvd
CVE-2020-6516P4MEDIUMCVSS 4.3v31v322020-07-22
CVE-2020-6516 [MEDIUM] CVE-2020-6516: Policy bypass in CORS in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross
Policy bypass in CORS in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
nvd
CVE-2023-32570P4MEDIUMCVSS 5.9v37v382023-05-10
CVE-2023-32570 [MEDIUM] CWE-362 CVE-2023-32570: VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash
VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit.
nvd
CVE-2020-11759P4MEDIUMCVSS 5.5v322020-04-14
CVE-2020-11759 [MEDIUM] CWE-190 CVE-2020-11759: An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLi
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of-bounds pointer.
nvd
CVE-2022-24130P4MEDIUMCVSS 5.5v34v352022-01-31
CVE-2022-24130 [MEDIUM] CWE-120 CVE-2022-24130: xterm through Patch 370, when Sixel support is enabled, allows attackers to trigger a buffer overflo
xterm through Patch 370, when Sixel support is enabled, allows attackers to trigger a buffer overflow in set_sixel in graphics_sixel.c via crafted text.
nvd
CVE-2021-21217P4MEDIUMCVSS 5.5v32v33+1 more2021-04-26
CVE-2021-21217 [MEDIUM] CWE-252 CVE-2021-21217: Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obt
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
nvd
CVE-2020-27824P4MEDIUMCVSS 5.5v32v332021-05-13
CVE-2020-27824 [MEDIUM] CWE-20 CVE-2020-27824: A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw
A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw allows an attacker who can supply crafted input to decomposition levels to cause a buffer overflow. The highest threat from this vulnerability is to system availability.
nvd
CVE-2019-1010305P4MEDIUMCVSS 5.5v29v302019-07-15
CVE-2019-1010305 [MEDIUM] CWE-119 CVE-2019-1010305: libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The com
libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmd_read_headers() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm file. The fixed version is: after commit 2f084136cfe0d05e5bf5703f3e83c6d955234b4d.
nvd
CVE-2021-32435P4MEDIUMCVSS 5.5v34v35+1 more2022-03-10
CVE-2021-32435 [MEDIUM] CWE-787 CVE-2021-32435: Stack-based buffer overflow in the function get_key in parse.c of abcm2ps v8.14.11 allows remote att
Stack-based buffer overflow in the function get_key in parse.c of abcm2ps v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via unspecified vectors.
nvd
CVE-2019-15587P4MEDIUMCVSS 5.4v30v312019-10-22
CVE-2019-15587 [MEDIUM] CWE-79 CVE-2019-15587: In the Loofah gem for Ruby through v2.3.0 unsanitized JavaScript may occur in sanitized output when
In the Loofah gem for Ruby through v2.3.0 unsanitized JavaScript may occur in sanitized output when a crafted SVG element is republished.
nvd
CVE-2018-20593P4MEDIUMCVSS 5.5v28v292018-12-30
CVE-2018-20593 [MEDIUM] CWE-787 CVE-2018-20593: In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxml
In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxmldoc.c.
nvd
CVE-2015-7211P4MEDIUMCVSS 5.0v22v232015-12-16
CVE-2015-7211 [MEDIUM] CWE-20 CVE-2015-7211: Mozilla Firefox before 43.0 mishandles the # (number sign) character in a data: URI, which allows re
Mozilla Firefox before 43.0 mishandles the # (number sign) character in a data: URI, which allows remote attackers to spoof web sites via unspecified vectors.
nvd
CVE-2022-39253P4MEDIUMCVSS 5.5v35v36+1 more2022-10-19
CVE-2022-39253 [MEDIUM] CWE-200 CVE-2022-39253: Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31
Git is an open source, scalable, distributed revision control system. Versions prior to 2.30.6, 2.31.5, 2.32.4, 2.33.5, 2.34.5, 2.35.5, 2.36.3, and 2.37.4 are subject to exposure of sensitive information to a malicious actor. When performing a local clone (where the source and target of the clone are on the same volume), Git copies the contents of t
nvd
CVE-2019-13286P4MEDIUMCVSS 5.5v29v30+1 more2019-07-04
CVE-2019-13286 [MEDIUM] CWE-125 CVE-2019-13286: In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionS
In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG2Stream.cc. It can, for example, be triggered by sending a crafted PDF document to the pdftoppm tool. It might allow an attacker to cause Information Disclosure.
nvd
CVE-2023-1206P4MEDIUMCVSS 5.7v382023-06-30
CVE-2023-1206 [MEDIUM] CWE-400 CVE-2023-1206: A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 funct
A hash collision flaw was found in the IPv6 connection lookup table in the Linux kernel’s IPv6 functionality when a user makes a new kind of SYN flood attack. A user located in the local network or with a high bandwidth connection can increase the CPU usage of the server that accepts IPV6 connections up to 95%.
nvd
CVE-2020-9359P4MEDIUMCVSS 5.3v30v31+1 more2020-03-24
CVE-2020-9359 [MEDIUM] CVE-2020-9359: KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
nvd