Fedoraproject Fedora vulnerabilities

5,277 known vulnerabilities affecting fedoraproject/fedora.

Total CVEs
5,277
CISA KEV
84
actively exploited
Public exploits
147
Exploited in wild
101
Severity breakdown
CRITICAL514HIGH2325MEDIUM2265LOW173

Vulnerabilities

Page 60 of 264
CVE-2022-25761HIGHCVSS 7.5v372022-08-23
CVE-2022-25761 [HIGH] CWE-770 CVE-2022-25761: The package open62541/open62541 before 1.2.5, from 1.3-rc1 and before 1.3.1 are vulnerable to Denial The package open62541/open62541 before 1.2.5, from 1.3-rc1 and before 1.3.1 are vulnerable to Denial of Service (DoS) due to a missing limitation on the number of received chunks - per single session or in total for all concurrent sessions. An attacker can exploit this vulnerability by sending an unlimited number of huge chunks (e.g. 2GB each) without
nvd
CVE-2021-31566HIGHCVSS 7.8v352022-08-23
CVE-2021-31566 [HIGH] CWE-59 CVE-2021-31566: An improper link resolution flaw can occur while extracting an archive leading to changing modes, ti An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to gain more privilege
nvd
CVE-2021-3975MEDIUMCVSS 6.5v352022-08-23
CVE-2021-3975 [MEDIUM] CWE-416 CVE-2021-3975: A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandl A use-after-free flaw was found in libvirt. The qemuMonitorUnregister() function in qemuProcessHandleMonitorEOF is called using multiple threads without being adequately protected by a monitor lock. This flaw could be triggered by the virConnectGetAllDomainStats API when the guest is shutting down. An unprivileged client with a read-only connection co
nvd
CVE-2021-3996MEDIUMCVSS 5.5v352022-08-23
CVE-2021-3996 [MEDIUM] CWE-552 CVE-2021-3996: A logic error was found in the libmount library of util-linux in the function that allows an unprivi A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows a local user on a vulnerable system to unmount other users' filesystems that are either world-writable themselves (like /tmp) or mounted in a world-writable directory. An attacker may use this fl
nvd
CVE-2021-3995MEDIUMCVSS 5.5v352022-08-23
CVE-2021-3995 [MEDIUM] CWE-552 CVE-2021-3995: A logic error was found in the libmount library of util-linux in the function that allows an unprivi A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use th
nvd
CVE-2022-37428MEDIUMCVSS 6.5v362022-08-23
CVE-2022-37428 [MEDIUM] CWE-459 CVE-2022-37428: PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has PowerDNS Recursor up to and including 4.5.9, 4.6.2 and 4.7.1, when protobuf logging is enabled, has Improper Cleanup upon a Thrown Exception, leading to a denial of service (daemon crash) via a DNS query that leads to an answer with specific properties.
nvd
CVE-2021-3997MEDIUMCVSS 5.5v34v352022-08-23
CVE-2021-3997 [MEDIUM] CWE-674 CVE-2021-3997: A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of s A flaw was found in systemd. An uncontrolled recursion in systemd-tmpfiles may lead to a denial of service at boot time when too many nested directories are created in /tmp.
nvd
CVE-2021-3659MEDIUMCVSS 5.5v342022-08-22
CVE-2021-3659 [MEDIUM] CWE-252 CVE-2021-3659: A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking su A NULL pointer dereference flaw was found in the Linux kernel’s IEEE 802.15.4 wireless networking subsystem in the way the user closes the LR-WPAN connection. This flaw allows a local user to crash the system. The highest threat from this vulnerability is to system availability.
nvd
CVE-2022-2873MEDIUMCVSS 5.5v362022-08-22
CVE-2022-2873 [MEDIUM] CWE-131 CVE-2022-2873: An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller An out-of-bounds memory access flaw was found in the Linux kernel Intel’s iSMT SMBus host controller driver in the way a user triggers the I2C_SMBUS_BLOCK_DATA (with the ioctl I2C_SMBUS) with malicious input data. This flaw allows a local user to crash the system.
nvd
CVE-2022-2923MEDIUMCVSS 5.5v352022-08-22
CVE-2022-2923 [MEDIUM] CWE-476 CVE-2022-2923: NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240. NULL Pointer Dereference in GitHub repository vim/vim prior to 9.0.0240.
nvd
CVE-2022-2889HIGHCVSS 7.8v352022-08-19
CVE-2022-2889 [HIGH] CWE-416 CVE-2022-2889: Use After Free in GitHub repository vim/vim prior to 9.0.0225. Use After Free in GitHub repository vim/vim prior to 9.0.0225.
nvd
CVE-2022-37047HIGHCVSS 7.8v35v36+1 more2022-08-18
CVE-2022-37047 [HIGH] CVE-2022-37047: The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_ipv6_next at common/get.c:713. NOTE: this is different from CVE-2022-27940.
nvd
CVE-2022-2625HIGHCVSS 8.0v362022-08-18
CVE-2022-2625 [HIGH] CWE-915 CVE-2022-2625: A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary obj A vulnerability was found in PostgreSQL. This attack requires permission to create non-temporary objects in at least one schema, the ability to lure or wait for an administrator to create or update an affected extension in that schema, and the ability to lure or wait for a victim to use the object targeted in CREATE OR REPLACE or CREATE IF NOT EXISTS. G
nvd
CVE-2022-37048HIGHCVSS 7.8v35v36+1 more2022-08-18
CVE-2022-37048 [HIGH] CVE-2022-37048: The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow The component tcprewrite in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in get_l2len_protocol at common/get.c:344. NOTE: this is different from CVE-2022-27941.
nvd
CVE-2022-37049HIGHCVSS 7.8v35v36+1 more2022-08-18
CVE-2022-37049 [HIGH] CVE-2022-37049: The component tcpprep in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in The component tcpprep in Tcpreplay v4.4.1 was discovered to contain a heap-based buffer overflow in parse_mpls at common/get.c:150. NOTE: this is different from CVE-2022-27942.
nvd
CVE-2022-2845HIGHCVSS 7.8v35v372022-08-17
CVE-2022-2845 [HIGH] CWE-1284 CVE-2022-2845: Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218. Improper Validation of Specified Quantity in Input in GitHub repository vim/vim prior to 9.0.0218.
nvd
CVE-2022-2849HIGHCVSS 7.8v372022-08-17
CVE-2022-2849 [HIGH] CWE-122 CVE-2022-2849: Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0220. Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.0220.
nvd
CVE-2022-2862HIGHCVSS 7.8v372022-08-17
CVE-2022-2862 [HIGH] CWE-416 CVE-2022-2862: Use After Free in GitHub repository vim/vim prior to 9.0.0221. Use After Free in GitHub repository vim/vim prior to 9.0.0221.
nvd
CVE-2022-2869MEDIUMCVSS 5.5v35v362022-08-17
CVE-2022-2869 [MEDIUM] CWE-191 CVE-2022-2869: libtiff's tiffcrop tool has a uint32_t underflow which leads to out of bounds read and write in the libtiff's tiffcrop tool has a uint32_t underflow which leads to out of bounds read and write in the extractContigSamples8bits routine. An attacker who supplies a crafted file to tiffcrop could trigger this flaw, most likely by tricking a user into opening the crafted file with tiffcrop. Triggering this flaw could cause a crash or potentially further ex
nvd
CVE-2022-2868MEDIUMCVSS 5.5v35v362022-08-17
CVE-2022-2868 [MEDIUM] CWE-20 CVE-2022-2868: libtiff's tiffcrop utility has a improper input validation flaw that can lead to out of bounds read libtiff's tiffcrop utility has a improper input validation flaw that can lead to out of bounds read and ultimately cause a crash if an attacker is able to supply a crafted file to tiffcrop.
nvd