VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2021-44225
In Keepalived through 2.2.4, the D-Bus policy does not sufficiently restrict the message destination, allowing any user to inspect and manipulate any property. This leads to access-control bypass in some situations in which an unrelated D-Bus system service has a settable (writable) property
Published 2021-11-26 · Modified
5.5EPSS 0.011
CVE-2022-33070
Protobuf-c v1.4.0 was discovered to contain an invalid arithmetic shift via the function parse_tag_and_wiretype in protobuf-c/protobuf-c.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via unspecified vectors.
Published 2022-06-22 · Modified
5.5EPSS 0.011
CVE-2020-11863
libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2).
Published 2020-05-11 · Modified
5.5EPSS 0.011
CVE-2022-31783
Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by lou_trace.
Published 2022-05-27 · Modified
5.5EPSS 0.011
CVE-2020-10378
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Published 2020-06-25 · Modified
5.5EPSS 0.011
CVE-2021-34334
Denial of service due to integer overflow in loop counter
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2018-20005
An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after-free in mxmlWalkNext in mxml-search.c, as demonstrated by mxmldoc.
Published 2018-12-10 · Modified
5.5EPSS 0.011
CVE-2021-37622
Denial of service due to infinite loop in JpegBase::printStructure (#1)
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-3272
jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
Published 2021-01-27 · Modified
5.5EPSS 0.011
CVE-2021-32815
Denial of service due to assertion failure in crwimage_int.cpp
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-37621
Denial of service due to infinite loop in Image::printIFDStructure
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2022-1122
A flaw was found in the opj2_decompress program in openjpeg2 2.4.0 in the way it handles an input directory with a large number of files. When it fails to allocate a buffer to store the filenames of the input directory, it calls free() on an uninitialized pointer, leading to a segmentation fault and a denial of service.
Published 2022-03-29 · Modified
5.5EPSS 0.011
CVE-2020-35493
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an impact to application availability. This flaw affects binutils versions prior to 2.34.
Published 2021-01-04 · Modified
5.5EPSS 0.011
CVE-2021-26260
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
Published 2021-06-08 · Modified
5.5EPSS 0.011
CVE-2021-46142
An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax.
Published 2022-01-06 · Modified
5.5EPSS 0.011
CVE-2019-20021
A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.
Published 2019-12-27 · Modified
5.5EPSS 0.011
CVE-2021-26927
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
Published 2021-02-23 · Modified
5.5EPSS 0.011
CVE-2021-29155
An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory. Specifically, for sequences of pointer arithmetic operations, the pointer modification performed by the first operation is not correctly accounted for when restricting subsequent operations.
Published 2021-04-20 · Modified
5.5EPSS 0.011
CVE-2020-16592
A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
Published 2020-12-09 · Modified
5.5EPSS 0.011
CVE-2021-37620
Out-of-bounds read in XmpTextValue::read()
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-37623
Denial of service due to infinite loop in JpegBase::printStructure (#2)
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2022-27939
tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_v6 in common/get.c.
Published 2022-03-26 · Modified
5.5EPSS 0.010
CVE-2021-30501
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow allows attackers to cause a denial of service (abort) via a crafted file.
Published 2021-05-26 · Modified
5.5EPSS 0.010
CVE-2021-37616
Null pointer dereference in Exiv2::Internal::resolveLens0x8ff
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2020-26519
Artifex MuPDF before 1.18.0 has a heap based buffer over-write when parsing JBIG2 files allowing attackers to cause a denial of service.
Published 2020-10-02 · Modified
5.5EPSS 0.010
CVE-2023-31489
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function.
Published 2023-05-09 · Modified
5.5EPSS 0.010
CVE-2020-13434
SQLite through 3.32.0 has an integer overflow in sqlite3_str_vappendf in printf.c.
Published 2020-05-24 · Modified
5.5EPSS 0.010
CVE-2021-3630
An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djvu file which may lead to crash and segmentation fault. This flaw affects DjVuLibre versions prior to 3.5.28.
Published 2021-06-30 · Modified
5.5EPSS 0.010
CVE-2020-23903
A Divide by Zero vulnerability in the function static int read_samples of Speex v1.2 allows attackers to cause a denial of service (DoS) via a crafted WAV file.
Published 2021-11-10 · Modified
5.5EPSS 0.010
CVE-2020-25725
In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes an `heap-use-after-free` problem. The codes of a previous fix for nested Type 3 characters wasn't correctly handling the case where a Type 3 char referred to another char in the same Type 3 font.
Published 2020-11-21 · Modified
5.5EPSS 0.010
CVE-2021-46019
An untrusted pointer dereference in rec_db_destroy() at rec-db.c of GNU Recutils v1.8.90 can lead to a segmentation fault or application crash.
Published 2022-01-14 · Modified
5.5EPSS 0.010
CVE-2021-37615
Null pointer dereference in Exiv2::Internal::resolveLens0x319
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2009-3621
net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier allows local users to cause a denial of service (system hang) by creating an abstract-namespace AF_UNIX listening socket, performing a shutdown operation on this socket, and then performing a series of connect operations to this socket.
Published 2009-10-22 · Modified
5.51 PoCEPSS 0.010
CVE-2020-16269
radare2 4.5.0 misparses DWARF information in executable files, causing a segmentation fault in parse_typedef in type_dwarf.c via a malformed DW_AT_name in the .debug_info section.
Published 2020-08-03 · Modified
5.5EPSS 0.010
CVE-2021-34335
Denial of service due to FPE in Exiv2::Internal::resolveLens0xffff
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-37618
Out-of-bounds read in Exiv2::Jp2Image::printStructure
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-37619
Out-of-bounds read in Exiv2::Jp2Image::encodeJp2Header
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-32434
abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c.
Published 2022-03-10 · Modified
5.5EPSS 0.010
CVE-2021-46022
An Use-After-Free vulnerability in rec_mset_elem_destroy() at rec-mset.c of GNU Recutils v1.8.90 can lead to a segmentation fault or application crash.
Published 2022-01-14 · Modified
5.5EPSS 0.010
CVE-2019-1010302
jhead 3.03 is affected by: Incorrect Access Control. The impact is: Denial of service. The component is: iptc.c Line 122 show_IPTC(). The attack vector is: the victim must open a specially crafted JPEG file.
Published 2019-07-15 · Modified
5.5EPSS 0.010
← Prev104 / 135Next →