cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 220 of 264
CVE-2020-12666P4MEDIUMCVSS 6.1v322020-05-05
CVE-2020-12666 [MEDIUM] CWE-601 CVE-2020-12666: macaron before 1.3.7 has an open redirect in the static handler, as demonstrated by the http://127.0 macaron before 1.3.7 has an open redirect in the static handler, as demonstrated by the http://127.0.0.1:4000//example.com/ URL.
nvd
CVE-2019-12067P4MEDIUMCVSS 6.5v302021-06-02
CVE-2019-12067 [MEDIUM] CWE-476 CVE-2019-12067: The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NU The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.
nvd
CVE-2015-3192P4MEDIUMCVSS 5.5v21v222016-07-12
CVE-2015-3192 [MEDIUM] CWE-119 CVE-2015-3192: Pivotal Spring Framework before 3.2.14 and 4.x before 4.1.7 do not properly process inline DTD decla Pivotal Spring Framework before 3.2.14 and 4.x before 4.1.7 do not properly process inline DTD declarations when DTD is not entirely disabled, which allows remote attackers to cause a denial of service (memory consumption and out-of-memory errors) via a crafted XML file.
nvd
CVE-2011-1027P4MEDIUMCVSS 5.0v13v14+1 more2011-03-20
CVE-2011-1027 [MEDIUM] CWE-193 CVE-2011-1027: Off-by-one error in the convert_query_hexchar function in html.c in cgit.cgi in cgit before 0.8.3.5 Off-by-one error in the convert_query_hexchar function in html.c in cgit.cgi in cgit before 0.8.3.5 allows remote attackers to cause a denial of service (infinite loop) via a string composed of a % (percent) character followed by invalid hex characters, as demonstrated by a %gg sequence.
nvd
CVE-2014-9637P4MEDIUMCVSS 5.5v20v212017-08-25
CVE-2014-9637 [MEDIUM] CWE-399 CVE-2014-9637: GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted diff file.
nvd
CVE-2014-9638P4MEDIUMCVSS 5.0v20v212015-01-23
CVE-2014-9638 [MEDIUM] CVE-2014-9638: oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero er oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.
nvd
CVE-2023-1544P4MEDIUMCVSS 6.3v372023-03-23
CVE-2023-1544 [MEDIUM] CWE-125 CVE-2023-1544: A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to allocate and initialize a huge number of page tables to be used as a ring of descriptors for CQ and async events, potentially leading to an out-of-bounds read and crash of QEMU.
nvd
CVE-2016-2038P4MEDIUMCVSS 5.3v22v232016-02-20
CVE-2016-2038 [MEDIUM] CWE-200 CVE-2016-2038: phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allows remote attac phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request, which reveals the full path in an error message.
nvd
CVE-2015-5203P4MEDIUMCVSS 5.5v23v24+1 more2017-08-02
CVE-2015-5203 [MEDIUM] CWE-415 CVE-2015-5203: Double free vulnerability in the jasper_image_stop_load function in JasPer 1.900.17 allows remote at Double free vulnerability in the jasper_image_stop_load function in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted JPEG 2000 image file.
nvd
CVE-2019-15142P4MEDIUMCVSS 5.5v29v30+1 more2019-08-18
CVE-2019-15142 [MEDIUM] CWE-125 CVE-2019-15142: In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of- In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application crash in GStringRep::strdup in libdjvu/GString.cpp caused by a heap-based buffer over-read) by crafting a DJVU file.
nvd
CVE-2020-11758P4MEDIUMCVSS 5.5v322020-04-14
CVE-2020-11758 [MEDIUM] CWE-125 CVE-2020-11758: An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixel An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.
nvd
CVE-2020-11761P4MEDIUMCVSS 5.5v322020-04-14
CVE-2020-11761 [MEDIUM] CWE-125 CVE-2020-11761: An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncom An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp.
nvd
CVE-2021-22924P4LOWCVSS 3.7v332021-08-05
CVE-2021-22924 [LOW] CWE-20 CVE-2021-22924: libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or c
nvd
CVE-2022-1622P4MEDIUMCVSS 5.5v35v362022-05-11
CVE-2022-1622 [MEDIUM] CWE-125 CVE-2022-1622: LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing atta LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit b4e79bfa.
nvd
CVE-2014-7155P4MEDIUMCVSS 5.8v19v202014-10-02
CVE-2014-7155 [MEDIUM] CWE-264 CVE-2014-7155: The x86_emulate function in arch/x86/x86_emulate/x86_emulate.c in Xen 4.4.x and earlier does not pro The x86_emulate function in arch/x86/x86_emulate/x86_emulate.c in Xen 4.4.x and earlier does not properly check supervisor mode permissions, which allows local HVM users to cause a denial of service (guest crash) or gain guest kernel mode privileges via vectors involving an (1) HLT, (2) LGDT, (3) LIDT, or (4) LMSW instruction.
nvd
CVE-2020-29482P4MEDIUMCVSS 6.0v32v332020-12-15
CVE-2020-29482 [MEDIUM] CWE-426 CVE-2020-29482: An issue was discovered in Xen through 4.14.x. A guest may access xenstore paths via absolute paths An issue was discovered in Xen through 4.14.x. A guest may access xenstore paths via absolute paths containing a full pathname, or via a relative path, which implicitly includes /local/domain/$DOMID for their own domain id. Management tools must access paths in guests' namespaces, necessarily using absolute paths. oxenstored imposes a pathname limit
nvd
CVE-2020-35522P4MEDIUMCVSS 5.5v332021-03-09
CVE-2020-35522 [MEDIUM] CWE-119 CVE-2020-35522: In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.
nvd
CVE-2020-25602P4MEDIUMCVSS 6.0v31v32+1 more2020-09-23
CVE-2020-25602 [MEDIUM] CWE-755 CVE-2020-25602: An issue was discovered in Xen through 4.14.x. An x86 PV guest can trigger a host OS crash when hand An issue was discovered in Xen through 4.14.x. An x86 PV guest can trigger a host OS crash when handling guest access to MSR_MISC_ENABLE. When a guest accesses certain Model Specific Registers, Xen first reads the value from hardware to use as the basis for auditing the guest access. For the MISC_ENABLE MSR, which is an Intel specific MSR, this MSR
nvd
CVE-2019-1010315P4MEDIUMCVSS 5.5v30v312019-07-11
CVE-2019-1010315 [MEDIUM] CWE-369 CVE-2019-1010315: WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero. The impact is: Divide by zero can l WavPack 5.1 and earlier is affected by: CWE 369: Divide by Zero. The impact is: Divide by zero can lead to sudden crash of a software/service that tries to parse a .wav file. The component is: ParseDsdiffHeaderConfig (dsdiff.c:282). The attack vector is: Maliciously crafted .wav file. The fixed version is: After commit https://github.com/dbry/Wa
nvd
CVE-2019-16167P4MEDIUMCVSS 5.5v312019-09-09
CVE-2019-16167 [MEDIUM] CWE-190 CVE-2019-16167: sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remap_struct() in sa_commo sysstat before 12.1.6 has memory corruption due to an Integer Overflow in remap_struct() in sa_common.c.
nvd
Fedoraproject Fedora vulnerabilities | cvebase