cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 245 of 264
CVE-2018-18407P4MEDIUMCVSS 5.5v28v292018-10-17
CVE-2018-18407 [MEDIUM] CWE-125 CVE-2018-18407: A heap-based buffer over-read was discovered in the tcpreplay-edit binary of Tcpreplay 4.3.0 beta1, A heap-based buffer over-read was discovered in the tcpreplay-edit binary of Tcpreplay 4.3.0 beta1, during the incremental checksum operation. The issue gets triggered in the function csum_replace4() in incremental_checksum.h, causing a denial of service.
nvd
CVE-2020-11864P4MEDIUMCVSS 5.5v312020-05-11
CVE-2020-11864 [MEDIUM] CVE-2020-11864: libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2). libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2).
nvd
CVE-2014-9670P4MEDIUMCVSS 4.3v20v212015-02-08
CVE-2014-9670 [MEDIUM] CWE-189 CVE-2014-9670: Multiple integer signedness errors in the pcf_get_encodings function in pcf/pcfread.c in FreeType be Multiple integer signedness errors in the pcf_get_encodings function in pcf/pcfread.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (integer overflow, NULL pointer dereference, and application crash) via a crafted PCF file that specifies negative values for the first column and first row.
nvd
CVE-2022-33068P4MEDIUMCVSS 5.5v35v362022-06-23
CVE-2022-33068 [MEDIUM] CWE-190 CVE-2022-33068: An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows attackers to cause a Denial of Service (DoS) via unspecified vectors.
nvd
CVE-2021-43519P4MEDIUMCVSS 5.5v352021-11-09
CVE-2021-43519 [MEDIUM] CWE-674 CVE-2021-43519: Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 allows attackers to perform a D Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 allows attackers to perform a Denial of Service via a crafted script file.
nvd
CVE-2018-20005P4MEDIUMCVSS 5.5v28v292018-12-10
CVE-2018-20005 [MEDIUM] CWE-416 CVE-2018-20005: An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after-free in mxmlWalkNext in mxml- An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after-free in mxmlWalkNext in mxml-search.c, as demonstrated by mxmldoc.
nvd
CVE-2021-34334P4MEDIUMCVSS 5.5v33v342021-08-09
CVE-2021-34334 [MEDIUM] CWE-835 CVE-2021-34334: Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the me Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An infinite loop is triggered when Exiv2 is used to read the metadata of a crafted image file. An attacker could potentially exploit the vulnerability to cause a denial of service, if they can trick the victim into running Exiv2
nvd
CVE-2020-25725P4MEDIUMCVSS 5.5v32v332020-11-21
CVE-2020-25725 [MEDIUM] CWE-416 CVE-2020-25725: In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to us In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes an `heap-use-after-free` problem. The codes of a previous fix for nested Type 3 characters wasn't correctly handling the case where a Type 3 char referred to another char in the same Type 3 font.
nvd
CVE-2019-1010302P4MEDIUMCVSS 5.5v29v302019-07-15
CVE-2019-1010302 [MEDIUM] CWE-119 CVE-2019-1010302: jhead 3.03 is affected by: Incorrect Access Control. The impact is: Denial of service. The component jhead 3.03 is affected by: Incorrect Access Control. The impact is: Denial of service. The component is: iptc.c Line 122 show_IPTC(). The attack vector is: the victim must open a specially crafted JPEG file.
nvd
CVE-2021-28675P4MEDIUMCVSS 5.5v332021-06-02
CVE-2021-28675 [MEDIUM] CWE-252 CVE-2021-28675: An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Image.open prior to Image.load.
nvd
CVE-2021-45343P4MEDIUMCVSS 5.5v34v352022-01-25
CVE-2021-45343 [MEDIUM] CWE-476 CVE-2021-45343: In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker t In LibreCAD 2.2.0, a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF document.
nvd
CVE-2022-1507P4MEDIUMCVSS 5.5v34v35+1 more2022-04-27
CVE-2022-1507 [MEDIUM] CWE-476 CVE-2022-1507: chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attac chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a crafted input file. in GitHub repository hpjansson/chafa prior to 1.10.2. chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of servi
nvd
CVE-2021-3933P4MEDIUMCVSS 5.5v362022-03-25
CVE-2021-3933 [MEDIUM] CWE-190 CVE-2021-3933: An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t < 64 b An integer overflow could occur when OpenEXR processes a crafted file on systems where size_t < 64 bits. This could cause an invalid bytesPerLine and maxBytesPerLine value, which could lead to problems with application stability or lead to other attack paths.
nvd
CVE-2019-13111P4MEDIUMCVSS 5.5v302019-06-30
CVE-2019-13111 [MEDIUM] CWE-190 CVE-2019-13111: A WebPImage::decodeChunks integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a den A WebPImage::decodeChunks integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (large heap allocation followed by a very long running loop) via a crafted WEBP image file.
nvd
CVE-2021-28678P4MEDIUMCVSS 5.5v332021-06-02
CVE-2021-28678 [MEDIUM] CWE-345 CVE-2021-28678: An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decoder could be run a large number of times on empty data.
nvd
CVE-2019-19221P4MEDIUMCVSS 5.5v322019-11-21
CVE-2019-19221 [MEDIUM] CWE-125 CVE-2019-19221: In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read b In Libarchive 3.4.0, archive_wstring_append_from_mbs in archive_string.c has an out-of-bounds read because of an incorrect mbrtowc or mbtowc call. For example, bsdtar crashes via a crafted archive.
nvd
CVE-2020-12867P4MEDIUMCVSS 5.5v322020-06-01
CVE-2020-12867 [MEDIUM] CWE-476 CVE-2020-12867: A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.
nvd
CVE-2022-35016P4MEDIUMCVSS 5.5v35v36+1 more2022-08-29
CVE-2022-35016 [MEDIUM] CWE-787 CVE-2022-35016: Advancecomp v2.3 was discovered to contain a heap buffer overflow. Advancecomp v2.3 was discovered to contain a heap buffer overflow.
nvd
CVE-2022-35017P4MEDIUMCVSS 5.5v35v36+1 more2022-08-29
CVE-2022-35017 [MEDIUM] CWE-787 CVE-2022-35017: Advancecomp v2.3 was discovered to contain a heap buffer overflow. Advancecomp v2.3 was discovered to contain a heap buffer overflow.
nvd
CVE-2024-24246P4MEDIUMCVSS 5.5v38v39+1 more2024-02-29
CVE-2024-24246 [MEDIUM] CWE-787 CVE-2024-24246: Heap Buffer Overflow vulnerability in qpdf 11.9.0 allows attackers to crash the application via the Heap Buffer Overflow vulnerability in qpdf 11.9.0 allows attackers to crash the application via the std::__shared_count() function at /bits/shared_ptr_base.h.
nvd
Fedoraproject Fedora vulnerabilities | cvebase