cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 207 of 264
CVE-2014-8105P4MEDIUMCVSS 5.0v222015-03-10
CVE-2014-8105 [MEDIUM] CWE-200 CVE-2014-8105: 389 Directory Server before 1.3.2.27 and 1.3.3.x before 1.3.3.9 does not properly restrict access to 389 Directory Server before 1.3.2.27 and 1.3.3.x before 1.3.3.9 does not properly restrict access to the "cn=changelog" LDAP sub-tree, which allows remote attackers to obtain sensitive information from the changelog via unspecified vectors.
nvd
CVE-2019-14847P4MEDIUMCVSS 4.9v29v302019-11-06
CVE-2019-14847 [MEDIUM] CWE-476 CVE-2019-14847: A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.10.x before 4.10.10. An attacker can A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.10.x before 4.10.10. An attacker can crash AD DC LDAP server via dirsync resulting in denial of service. Privilege escalation is not possible with this issue.
nvd
CVE-2021-26925P4MEDIUMCVSS 5.4v32v332021-02-09
CVE-2021-26925 [MEDIUM] CWE-79 CVE-2021-26925: Roundcube before 1.4.11 allows XSS via crafted Cascading Style Sheets (CSS) token sequences during H Roundcube before 1.4.11 allows XSS via crafted Cascading Style Sheets (CSS) token sequences during HTML email rendering.
nvd
CVE-2021-45471P4MEDIUMCVSS 5.3v352021-12-24
CVE-2021-45471 [MEDIUM] CVE-2021-45471: In MediaWiki through 1.37, blocked IP addresses are allowed to edit EntitySchema items. In MediaWiki through 1.37, blocked IP addresses are allowed to edit EntitySchema items.
nvd
CVE-2021-3421P4MEDIUMCVSS 5.5v32v33+1 more2021-05-19
CVE-2021-3421 [MEDIUM] CWE-347 CVE-2021-3421: A flaw was found in the RPM package in the read functionality. This flaw allows an attacker who can A flaw was found in the RPM package in the read functionality. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package or compromise an RPM repository, to cause RPM database corruption. The highest threat from this vulnerability is to data integrity. This flaw affects RPM versions before 4.17.0-alpha.
nvd
CVE-2018-10846P4MEDIUMCVSS 5.6v31v322018-08-22
CVE-2018-10846 [MEDIUM] CWE-385 CVE-2018-10846: A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM at A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain text using crafted packets.
nvd
CVE-2020-26555P4MEDIUMCVSS 5.4v342021-05-24
CVE-2020-26555 [MEDIUM] CWE-863 CVE-2020-26555: Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN.
nvd
CVE-2022-31628P4MEDIUMCVSS 5.5v35v36+1 more2022-09-28
CVE-2022-31628 [MEDIUM] CWE-674 CVE-2022-31628: In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncom In PHP versions before 7.4.31, 8.0.24 and 8.1.11, the phar uncompressor code would recursively uncompress "quines" gzip files, resulting in an infinite loop.
nvd
CVE-2021-28650P4MEDIUMCVSS 5.5v342021-03-17
CVE-2021-28650 [MEDIUM] CVE-2021-28650: autoar-extractor.c in GNOME gnome-autoar before 0.3.1, as used by GNOME Shell, Nautilus, and other s autoar-extractor.c in GNOME gnome-autoar before 0.3.1, as used by GNOME Shell, Nautilus, and other software, allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink in certain complex situations. NOTE: this issue exists because of an incomplete fix for CVE-2020-36241.
nvd
CVE-2018-1099P4MEDIUMCVSS 5.5v302018-04-03
CVE-2018-1099 [MEDIUM] CWE-20 CVE-2018-1099: DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records to direct to localhost, and trick the browser into sending requests to localhost (or any other address).
nvd
CVE-2023-26916P4MEDIUMCVSS 5.3v36v372023-04-03
CVE-2023-26916 [MEDIUM] CWE-476 CVE-2023-26916: libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the functi libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lys_parse_mem at lys_parse_mem.c.
nvd
CVE-2014-1859P4MEDIUMCVSS 5.5v19v202018-01-08
CVE-2014-1859 [MEDIUM] CWE-59 CVE-2014-1859: (1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/te (1) core/tests/test_memmap.py, (2) core/tests/test_multiarray.py, (3) f2py/f2py2e.py, and (4) lib/tests/test_io.py in NumPy before 1.8.1 allow local users to write to arbitrary files via a symlink attack on a temporary file.
nvd
CVE-2012-1105P4MEDIUMCVSS 5.5v15v162019-12-05
CVE-2012-1105 [MEDIUM] CWE-200 CVE-2012-1105: An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in th An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. The Central Authentication Service client library archives the debug logging file in an insecure manner.
nvd
CVE-2021-35477P4MEDIUMCVSS 5.5v33v342021-08-02
CVE-2021-35477 [MEDIUM] CWE-203 CVE-2021-35477: In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information fro In the Linux kernel through 5.13.7, an unprivileged BPF program can obtain sensitive information from kernel memory via a Speculative Store Bypass side-channel attack because a certain preempting store operation does not necessarily occur before a store operation that has an attacker-controlled value.
nvd
CVE-2021-3505P4MEDIUMCVSS 5.5v332021-04-19
CVE-2021-3505 [MEDIUM] CWE-331 CVE-2021-3505: A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys A flaw was found in libtpms in versions before 0.8.0. The TPM 2 implementation returns 2048 bit keys with ~1984 bit strength due to a bug in the TCG specification. The bug is in the key creation algorithm in RsaAdjustPrimeCandidate(), which is called before the prime number check. The highest threat from this vulnerability is to data confidentiality.
nvd
CVE-2023-40550P4MEDIUMCVSS 5.5v392024-01-29
CVE-2023-40550 [MEDIUM] CWE-125 CVE-2023-40550: An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This is An out-of-bounds read flaw was found in Shim when it tried to validate the SBAT information. This issue may expose sensitive data during the system's boot phase.
nvd
CVE-2014-5118P4MEDIUMCVSS 5.5v19v202019-11-18
CVE-2014-5118 [MEDIUM] CWE-20 CVE-2014-5118: Trusted Boot (tboot) before 1.8.2 has a 'loader.c' Security Bypass Vulnerability Trusted Boot (tboot) before 1.8.2 has a 'loader.c' Security Bypass Vulnerability
nvd
CVE-2023-6681P4MEDIUMCVSS 5.3v38v392024-02-12
CVE-2023-6681 [MEDIUM] CWE-400 CVE-2023-6681: A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (Do A vulnerability was found in JWCrypto. This flaw allows an attacker to cause a denial of service (DoS) attack and possible password brute-force and dictionary attacks to be more resource-intensive. This issue can result in a large amount of computational consumption, causing a denial of service attack.
nvd
CVE-2020-16150P4MEDIUMCVSS 5.5v31v32+1 more2020-09-02
CVE-2020-16150 [MEDIUM] CWE-203 CVE-2020-16150: A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware M A Lucky 13 timing side channel in mbedtls_ssl_decrypt_buf in library/ssl_msg.c in Trusted Firmware Mbed TLS through 2.23.0 allows an attacker to recover secret key information. This affects CBC mode because of a computed time difference based on a padding length.
nvd
CVE-2023-43788P4MEDIUMCVSS 5.5v37v38+1 more2023-10-10
CVE-2023-43788 [MEDIUM] CWE-125 CVE-2023-43788: A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuff A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker to trigger an out-of-bounds read error and read the contents of memory on the system.
nvd
Fedoraproject Fedora vulnerabilities | cvebase