cbcvebase.

Fedoraproject Fedora vulnerabilities

5,279 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173

Vulnerabilities

Page 33 of 264
CVE-2020-28636P3CRITICALCVSS 9.8v33v342021-03-04
CVE-2020-28636 [CRITICAL] CWE-129 CVE-2020-28636: A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL- A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser::read_sloop() slh->twin() An attacker can provide malicious input to trigger this vulnerability.
nvd
CVE-2010-2963P4MEDIUMCVSS 6.2PoCv132010-11-26
CVE-2010-2963 [MEDIUM] CWE-20 CVE-2010-2963: drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kerne drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kernel memory locations, and consequently gain privileges, via a VIDIOCSTUNER ioctl call on a /dev/video devi
nvd
CVE-2019-9895P3CRITICALCVSS 9.8v28v292019-03-21
CVE-2019-9895 [CRITICAL] CWE-119 CVE-2019-9895: In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of In PuTTY versions before 0.71 on Unix, a remotely triggerable buffer overflow exists in any kind of server-to-client forwarding.
nvd
CVE-2021-43616P3CRITICALCVSS 9.8v352021-11-13
CVE-2021-43616 [CRITICAL] CWE-345 CVE-2021-43616: The npm ci command in npm 7.x and 8.x through 8.1.3 proceeds with an installation even if dependency The npm ci command in npm 7.x and 8.x through 8.1.3 proceeds with an installation even if dependency information in package-lock.json differs from package.json. This behavior is inconsistent with the documentation, and makes it easier for attackers to install malware that was supposed to have been blocked by an exact version match requirement in p
nvd
CVE-2016-3069P3HIGHCVSS 8.8v22v232016-04-13
CVE-2016-3069 [HIGH] CWE-20 CVE-2016-3069: Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted name when con Mercurial before 3.7.3 allows remote attackers to execute arbitrary code via a crafted name when converting a Git repository.
nvd
CVE-2017-18922P3CRITICALCVSS 9.8v31v322020-06-30
CVE-2017-18922 [CRITICAL] CWE-787 CVE-2017-18922: It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode certain It was discovered that websockets.c in LibVNCServer prior to 0.9.12 did not properly decode certain WebSocket frames. A malicious attacker could exploit this by sending specially crafted WebSocket frames to a server, causing a heap-based buffer overflow.
nvd
CVE-2015-2806P3CRITICALCVSS 10.0v20v21+1 more2015-04-10
CVE-2015-2806 [CRITICAL] CWE-119 CVE-2015-2806: Stack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to h Stack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to have unspecified impact via unknown vectors.
nvd
CVE-2019-18622P3CRITICALCVSS 9.8v30v312019-11-22
CVE-2019-18622 [CRITICAL] CWE-89 CVE-2019-18622: An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to tri An issue was discovered in phpMyAdmin before 4.9.2. A crafted database/table name can be used to trigger a SQL injection attack through the designer feature.
nvd
CVE-2021-20204P3CRITICALCVSS 9.8v33v34+1 more2021-05-06
CVE-2021-20204 [CRITICAL] CWE-119 CVE-2021-20204: A heap memory corruption problem (use after free) can be triggered in libgetdata v0.10.0 when proces A heap memory corruption problem (use after free) can be triggered in libgetdata v0.10.0 when processing maliciously crafted dirfile databases. This degrades the confidentiality, integrity and availability of third-party software that uses libgetdata as a library. This vulnerability may lead to arbitrary code execution or privilege escalation depe
nvd
CVE-2021-21348P3HIGHCVSS 7.5v33v34+1 more2021-03-23
CVE-2021-21348 [HIGH] CWE-400 CVE-2021-21348: XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4. XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes maximum CPU time and will never return. No user is affected, who followed the recommendation to setup XStream's security framework with a whitelist limited t
nvd
CVE-2021-23336P3MEDIUMCVSS 5.9v32v33+1 more2021-02-15
CVE-2021-23336 [MEDIUM] CWE-444 CVE-2021-23336: The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and be The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9.0 and before 3.9.2 are vulnerable to Web Cache Poisoning via urllib.parse.parse_qsl and urllib.parse.parse_qs by using a vector called parameter cloaking. When the attacker can separate query parameters using a semicolon (;), they
nvd
CVE-2024-21812P3CRITICALCVSS 9.8v402024-02-20
CVE-2024-21812 [CRITICAL] CWE-190 CVE-2024-21812: An integer overflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project An integer overflow vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to an out-of-bounds write which in turn can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2024-23310P3CRITICALCVSS 9.8v402024-02-20
CVE-2024-23310 [CRITICAL] CWE-825 CVE-2024-23310: A use-after-free vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project li A use-after-free vulnerability exists in the sopen_FAMOS_read functionality of The Biosig Project libbiosig 2.5.0 and Master Branch (ab0ee111). A specially crafted .famos file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2022-32212P3HIGHCVSS 8.1v35v36+1 more2022-07-14
CVE-2022-32212 [HIGH] CWE-284 CVE-2022-32212: A OS Command Injection vulnerability exists in Node.js versions <14.20.0, <16.20.0, <18.5.0 due to a A OS Command Injection vulnerability exists in Node.js versions <14.20.0, <16.20.0, <18.5.0 due to an insufficient IsAllowedHost check that can easily be bypassed because IsIPAddress does not properly check if an IP address is invalid before making DBS requests allowing rebinding attacks.
nvd
CVE-2019-1010228P3CRITICALCVSS 9.8v29v302019-07-22
CVE-2019-1010228 [CRITICAL] CWE-787 CVE-2019-1010228: OFFIS.de DCMTK 3.6.3 and below is affected by: Buffer Overflow. The impact is: Possible code executi OFFIS.de DCMTK 3.6.3 and below is affected by: Buffer Overflow. The impact is: Possible code execution and confirmed Denial of Service. The component is: DcmRLEDecoder::decompress() (file dcrledec.h, line 122). The attack vector is: Many scenarios of DICOM file processing (e.g. DICOM to image conversion). The fixed version is: 3.6.4, after com
nvd
CVE-2024-22391P3CRITICALCVSS 9.8v38v39+1 more2024-04-25
CVE-2024-22391 [CRITICAL] CWE-119 CVE-2024-22391: A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathie A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
nvd
CVE-2017-9105P3HIGHCVSS 8.8v31v322020-06-18
CVE-2017-9105 [HIGH] CWE-476 CVE-2017-9105: An issue was discovered in adns before 1.5.2. It corrupts a pointer when a nameserver speaks first b An issue was discovered in adns before 1.5.2. It corrupts a pointer when a nameserver speaks first because of a wrong number of pointer dereferences. This bug may well be exploitable as a remote code execution.
nvd
CVE-2023-1529P3CRITICALCVSS 9.8v36v37+1 more2023-03-21
CVE-2023-1529 [CRITICAL] CWE-787 CVE-2023-1529: Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote atta Out of bounds memory access in WebHID in Google Chrome prior to 111.0.5563.110 allowed a remote attacker to potentially exploit heap corruption via a malicious HID device. (Chromium security severity: High)
nvd
CVE-2024-36048P3CRITICALCVSS 9.8v39v402024-05-18
CVE-2024-36048 [CRITICAL] CWE-335 CVE-2024-36048: QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6. QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.
nvd
CVE-2021-20322P3HIGHCVSS 7.4v342022-02-18
CVE-2021-20322 [HIGH] CWE-330 CVE-2021-20322: A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Lin A flaw in the processing of received ICMP errors (ICMP fragment needed and ICMP redirect) in the Linux kernel functionality was found to allow the ability to quickly scan open UDP ports. This flaw allows an off-path remote user to effectively bypass the source port UDP randomization. The highest threat from this vulnerability is to confidentiality and
nvd
Fedoraproject Fedora vulnerabilities | cvebase