VendorsFedora Projectfedora38
Vulnerabilities

Fedora Project Fedora 38

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

640CVEs
CVE-2022-4645
LibTIFF 4.4.0 has an out-of-bounds read in tiffcp in tools/tiffcp.c:948, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit e8131125.
Published 2023-03-03 · Modified
6.8EPSS 0.004
CVE-2023-2426
Use of Out-of-range Pointer Offset in vim/vim
Published 2023-04-29 · Analyzed
6.8EPSS 0.004
CVE-2023-4273
Kernel: exfat: stack overflow in exfat_get_uniname_from_ext_entry
Published 2023-08-09 · Modified
6.7EPSS 0.007
CVE-2023-51797
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showwaves.c:722:24 in showwaves_filter_frame
Published 2024-04-19 · Analyzed
6.7EPSS 0.004
CVE-2023-39192
Kernel: netfilter: xtables out-of-bounds read in u32_match_it()
Published 2023-10-09 · Modified
6.7EPSS 0.004
CVE-2023-6238
Kernel: nvme: memory corruption via unprivileged user passthrough
Published 2023-11-21 · Modified
6.7EPSS 0.003
CVE-2023-2194
An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace "data->block[0]" variable was not capped to a number between 0-255 and was used as the size of a memcpy, possibly writing beyond the end of dma_buffer. This flaw could allow a local privileged user to crash the system or potentially achieve code execution.
Published 2023-04-20 · Modified
6.7EPSS 0.002
CVE-2023-1264
NULL Pointer Dereference in vim/vim
Published 2023-03-07 · Modified
6.6EPSS 0.004
CVE-2023-25136
OpenSSH server (sshd) 9.1 introduced a double-free vulnerability during options.kex_algorithms handling. This is fixed in OpenSSH 9.2. The double free can be leveraged, by an unauthenticated remote attacker in the default configuration, to jump to any location in the sshd address space. One third-party report states "remote code execution is theoretically possible."
Published 2023-02-03 · Modified
6.5EPSS 0.897
CVE-2023-42916
An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 17.1.2 and iPadOS 17.1.2, macOS Sonoma 14.1.2, Safari 17.1.2. Processing web content may disclose sensitive information. Apple is aware of a report that this issue may have been exploited against versions of iOS before iOS 16.7.1.
Published 2023-11-30 · Analyzed
6.5KEVEPSS 0.178
CVE-2023-46842
x86 HVM hypercalls may trigger Xen bug check
Published 2024-05-16 · Analyzed
6.5EPSS 0.085
CVE-2023-30943
Moodle: tinymce loaders susceptible to arbitrary folder creation
Published 2023-05-02 · Modified
6.5EPSS 0.066
CVE-2023-1993
LISP dissector large loop in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Published 2023-04-12 · Modified
6.5EPSS 0.041
CVE-2022-0856
libcaca is affected by a Divide By Zero issue via img2txt, which allows a remote malicious user to cause a Denial of Service
Published 2022-03-08 · Modified
6.5EPSS 0.028
CVE-2023-3255
Qemu: vnc: infinite loop in inflate_buffer() leads to denial of service
Published 2023-09-13 · Modified
6.5EPSS 0.019
CVE-2023-6277
Libtiff: out-of-memory in tiffopen via a craft file
Published 2023-11-24 · Modified
6.5EPSS 0.018
CVE-2022-24599
In autofile Audio File Library 0.3.6, there exists one memory leak vulnerability in printfileinfo, in printinfo.c, which allows an attacker to leak sensitive information via a crafted file. The printfileinfo function calls the copyrightstring function to get data, however, it dosn't use zero bytes to truncate the data.
Published 2022-02-22 · Modified
6.5EPSS 0.017
CVE-2023-4527
Glibc: stack read overflow in getaddrinfo in no-aaaa mode
Published 2023-09-18 · Modified
6.5EPSS 0.017
CVE-2023-21946
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).
Published 2023-04-18 · Modified
6.5EPSS 0.015
CVE-2024-23284
A logic issue was addressed with improved state management. This issue is fixed in Safari 17.4, iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing maliciously crafted web content may prevent Content Security Policy from being enforced.
Published 2024-03-08 · Modified
6.5EPSS 0.015
CVE-2024-31208
Synapse's V2 state resolution weakness allows DoS from remote room members
Published 2024-04-23 · Analyzed
6.5EPSS 0.015
CVE-2023-34969
D-Bus before 1.15.6 sometimes allows unprivileged users to crash dbus-daemon. If a privileged user with control over the dbus-daemon is using the org.freedesktop.DBus.Monitoring interface to monitor message bus traffic, then an unprivileged user with the ability to connect to the same dbus-daemon can cause a dbus-daemon crash under some circumstances via an unreplyable message. When done on the well-known system bus, this is a denial-of-service vulnerability. The fixed versions are 1.12.28, 1.14.8, and 1.15.6.
Published 2023-06-08 · Modified
6.5EPSS 0.014
CVE-2023-0003
Cortex XSOAR: Local File Disclosure Vulnerability in the Cortex XSOAR Server
Published 2023-02-08 · Modified
6.5EPSS 0.013
CVE-2023-41983
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.1, Safari 17.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1. Processing web content may lead to a denial-of-service.
Published 2023-10-25 · Modified
6.5EPSS 0.013
CVE-2023-1729
A flaw was found in LibRaw. A heap-buffer-overflow in raw2image_ex() caused by a maliciously crafted file may lead to an application crash.
Published 2023-05-15 · Analyzed
6.5EPSS 0.013
CVE-2023-6512
Inappropriate implementation in Web Browser UI in Google Chrome prior to 120.0.6099.62 allowed a remote attacker to potentially spoof the contents of an iframe dialog context menu via a crafted HTML page. (Chromium security severity: Low)
Published 2023-12-06 · Modified
6.5EPSS 0.013
CVE-2023-28856
`HINCRBYFLOAT` can be used to crash a redis-server process
Published 2023-04-18 · Modified
6.5EPSS 0.013
CVE-2023-52160
The implementation of PEAP in wpa_supplicant through 2.10 allows authentication bypass. For a successful attack, wpa_supplicant must be configured to not verify the network's TLS certificate during Phase 1 authentication, and an eap_peap_decrypt vulnerability can then be abused to skip Phase 2 authentication. The attack vector is sending an EAP-TLV Success packet instead of starting Phase 2. This allows an adversary to impersonate Enterprise Wi-Fi networks.
Published 2024-02-22 · Modified
6.5EPSS 0.012
CVE-2023-5484
Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)
Published 2023-10-11 · Modified
6.5EPSS 0.011
CVE-2023-33460
There's a memory leak in yajl 2.1.0 with use of yajl_tree_parse function. which will cause out-of-memory in server and cause crash.
Published 2023-06-06 · Modified
6.5EPSS 0.011
CVE-2023-0004
PAN-OS: Local File Deletion Vulnerability
Published 2023-04-12 · Modified
6.5EPSS 0.011
CVE-2024-25569
An out-of-bounds read vulnerability exists in the RAWCodec::DecodeBytes functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to an out-of-bounds read. An attacker can provide a malicious file to trigger this vulnerability.
Published 2024-04-25 · Modified
6.5EPSS 0.011
CVE-2023-1994
GQUIC dissector crash in Wireshark 4.0.0 to 4.0.4 and 3.6.0 to 3.6.12 allows denial of service via packet injection or crafted capture file
Published 2023-04-12 · Modified
6.5EPSS 0.010
CVE-2023-2459
Inappropriate implementation in Prompts in Google Chrome prior to 113.0.5672.63 allowed a remote attacker to bypass permission restrictions via a crafted HTML page. (Chromium security severity: Medium)
Published 2023-05-02 · Modified
6.5EPSS 0.010
CVE-2023-29408
Excessive resource consumption in golang.org/x/image/tiff
Published 2023-08-02 · Modified
6.5EPSS 0.009
CVE-2024-4950
Inappropriate implementation in Downloads in Google Chrome prior to 125.0.6422.60 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low)
Published 2024-05-15 · Modified
6.5EPSS 0.009
CVE-2023-31147
Insufficient randomness in generation of DNS query IDs in c-ares
Published 2023-05-25 · Modified
6.5EPSS 0.009
CVE-2023-4350
Inappropriate implementation in Fullscreen in Google Chrome on Android prior to 116.0.5845.96 allowed a remote attacker to potentially spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)
Published 2023-08-15 · Modified
6.5EPSS 0.009
CVE-2023-29407
Excessive CPU consumption when decoding 0-height images in golang.org/x/image/tiff
Published 2023-08-02 · Modified
6.5EPSS 0.009
CVE-2024-2630
Inappropriate implementation in iOS in Google Chrome prior to 123.0.6312.58 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)
Published 2024-03-20 · Modified
6.5EPSS 0.008
← Prev10 / 16Next →