Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 213 of 264
CVE-2024-25979P4MEDIUMCVSS 5.3v382024-02-19
CVE-2024-25979 [MEDIUM] CWE-233 CVE-2024-25979: The URL parameters accepted by forum search were not limited to the allowed parameters.
The URL parameters accepted by forum search were not limited to the allowed parameters.
nvd
CVE-2024-34397P4MEDIUMCVSS 5.2v39v402024-05-07
CVE-2024-34397 [MEDIUM] CWE-290 CVE-2024-34397: An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDB
An issue was discovered in GNOME GLib before 2.78.5, and 2.79.x and 2.80.x before 2.80.1. When a GDBus-based client subscribes to signals from a trusted system service such as NetworkManager on a shared computer, other users of the same computer can send spoofed D-Bus signals that the GDBus-based client will wrongly interpret as having been sent by
nvd
CVE-2023-5548P4MEDIUMCVSS 5.3v382023-11-09
CVE-2023-5548 [MEDIUM] CWE-349 CVE-2023-5548: Stronger revision number limitations were required on file serving endpoints to improve cache poison
Stronger revision number limitations were required on file serving endpoints to improve cache poisoning protection.
nvd
CVE-2008-0005P4MEDIUMCVSS 4.3v7v82008-01-12
CVE-2008-0005 [MEDIUM] CWE-79 CVE-2008-0005: mod_proxy_ftp in Apache 2.2.x before 2.2.7-dev, 2.0.x before 2.0.62-dev, and 1.3.x before 1.3.40-dev
mod_proxy_ftp in Apache 2.2.x before 2.2.7-dev, 2.0.x before 2.0.62-dev, and 1.3.x before 1.3.40-dev does not define a charset, which allows remote attackers to conduct cross-site scripting (XSS) attacks using UTF-7 encoding.
nvd
CVE-2019-11498P4MEDIUMCVSS 6.5v29v30+1 more2019-04-24
CVE-2019-11498 [MEDIUM] CWE-824 CVE-2019-11498: WavpackSetConfiguration64 in pack_utils.c in libwavpack.a in WavPack through 5.1.0 has a "Conditiona
WavpackSetConfiguration64 in pack_utils.c in libwavpack.a in WavPack through 5.1.0 has a "Conditional jump or move depends on uninitialised value" condition, which might allow attackers to cause a denial of service (application crash) via a DFF file that lacks valid sample-rate data.
nvd
CVE-2024-28180P4MEDIUMCVSS 4.3≥ 38, ≤ 402024-03-09
CVE-2024-28180 [MEDIUM] CWE-409 CVE-2024-28180: Package jose aims to provide an implementation of the Javascript Object Signing and Encryption set o
Package jose aims to provide an implementation of the Javascript Object Signing and Encryption set of standards. An attacker could send a JWE containing compressed data that used large amounts of memory and CPU when decompressed by Decrypt or DecryptMulti. Those functions now return an error if the decompressed data would exceed 250kB or 10x the com
nvd
CVE-2021-32056P4MEDIUMCVSS 4.3v34v352021-05-10
CVE-2021-32056 [MEDIUM] CWE-732 CVE-2021-32056: Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypa
Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypass intended access restrictions on server annotations and consequently cause replication to stall.
nvd
CVE-2022-24349P4MEDIUMCVSS 4.4v34v352022-03-09
CVE-2022-24349 [MEDIUM] CWE-79 CVE-2022-24349: An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it t
An authenticated user can create a link with reflected XSS payload for actions’ pages, and send it to other users. Malicious code has access to all the same objects as the rest of the web page and can make arbitrary modifications to the contents of the page being displayed to a victim. This attack can be implemented with the help of social engineerin
nvd
CVE-2022-24919P4MEDIUMCVSS 4.4v34v35+1 more2022-03-09
CVE-2022-24919 [MEDIUM] CWE-79 CVE-2022-24919: An authenticated user can create a link with reflected Javascript code inside it for graphs’ page an
An authenticated user can create a link with reflected Javascript code inside it for graphs’ page and send it to other users. The payload can be executed only with a known CSRF token value of the victim, which is changed periodically and is difficult to predict. Malicious code has access to all the same objects as the rest of the web page and can mak
nvd
CVE-2022-41877P4MEDIUMCVSS 4.6v36v372022-11-16
CVE-2022-41877 [MEDIUM] CWE-119 CVE-2022-41877: FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are miss
FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length validation in `drive` channel. A malicious server can trick a FreeRDP based client to read out of bound data and send it back to the server. This issue has been addressed in version 2.9.0 and all users are advised to upgrade. Users un
nvd
CVE-2022-39319P4MEDIUMCVSS 4.6v36v372022-11-16
CVE-2022-39319 [MEDIUM] CWE-125 CVE-2022-39319: FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are miss
FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP are missing input length validation in the `urbdrc` channel. A malicious server can trick a FreeRDP based client to read out of bound data and send it back to the server. This issue has been addressed in version 2.9.0 and all users are advised to upgrade. Use
nvd
CVE-2022-39320P4MEDIUMCVSS 4.6v36v372022-11-16
CVE-2022-39320 [MEDIUM] CWE-125 CVE-2022-39320: FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP may atte
FreeRDP is a free remote desktop protocol library and clients. Affected versions of FreeRDP may attempt integer addition on too narrow types leads to allocation of a buffer too small holding the data written. A malicious server can trick a FreeRDP based client to read out of bound data and send it back to the server. This issue has been addressed in
nvd
CVE-2013-4411P4MEDIUMCVSS 4.3v18v19+1 more2019-12-03
CVE-2013-4411 [MEDIUM] CWE-863 CVE-2013-4411: Review Board: URL processing gives unauthorized users access to review lists
Review Board: URL processing gives unauthorized users access to review lists
nvd
CVE-2021-3448P4MEDIUMCVSS 4.0v32v33+1 more2021-04-08
CVE-2021-3448 [MEDIUM] CWE-358 CVE-2021-3448: A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a
A flaw was found in dnsmasq in versions before 2.85. When configured to use a specific server for a given network interface, dnsmasq uses a fixed port while forwarding queries. An attacker on the network, able to find the outgoing port used by dnsmasq, only needs to guess the random transmission ID to forge a reply and get it accepted by dnsmasq. This
nvd
CVE-2018-14628P4MEDIUMCVSS 4.3v372023-01-17
CVE-2018-14628 [MEDIUM] CWE-862 CVE-2018-14628: An information leak vulnerability was discovered in Samba's LDAP server. Due to missing access contr
An information leak vulnerability was discovered in Samba's LDAP server. Due to missing access control checks, an authenticated but unprivileged attacker could discover the names and preserved attributes of deleted objects in the LDAP store.
nvd
CVE-2022-21713P4MEDIUMCVSS 4.3v34v35+1 more2022-02-08
CVE-2022-21713 [MEDIUM] CWE-863 CVE-2022-21713: Grafana is an open-source platform for monitoring and observability. Affected versions of Grafana ex
Grafana is an open-source platform for monitoring and observability. Affected versions of Grafana expose multiple API endpoints which do not properly handle user authorization. `/teams/:teamId` will allow an authenticated attacker to view unintended data by querying for the specific team ID, `/teams/:search` will allow an authenticated attacker to s
nvd
CVE-2021-44141P4MEDIUMCVSS 4.3v34v352022-02-21
CVE-2021-44141 [MEDIUM] CWE-200 CVE-2021-44141: All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.
nvd
CVE-2008-6552P4MEDIUMCVSS 6.9v92009-03-30
CVE-2008-6552 [MEDIUM] CWE-59 CVE-2008-6552: Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink at
Red Hat Cluster Project 2.x allows local users to modify or overwrite arbitrary files via symlink attacks on files in /tmp, involving unspecified components in Resource Group Manager (aka rgmanager) before 2.03.09-1, gfs2-utils before 2.03.09-1, and CMAN - The Cluster Manager before 2.03.09-1 on Fedora 9.
nvd
CVE-2015-4816P4MEDIUMCVSS 4.0v232015-10-21
CVE-2015-4816 [MEDIUM] CVE-2015-4816: Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier allows remote authenticated user
Unspecified vulnerability in Oracle MySQL Server 5.5.44 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : InnoDB.
nvd
CVE-2016-2312P4MEDIUMCVSS 6.8v22v232016-12-23
CVE-2016-2312 [MEDIUM] CWE-254 CVE-2016-2312: Turning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can res
Turning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can result in the screen being unlocked when turning a screen on again.
nvd