VendorsFedora Projectfedora35
Vulnerabilities

Fedora Project Fedora 35

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1095CVEs
CVE-2020-16156
CPAN 2.28 allows Signature Verification Bypass.
Published 2021-12-13 · Modified
7.8EPSS 0.008
CVE-2022-41741
NGINX ngx_http_mp4_module vulnerability CVE-2022-41741
Published 2022-10-19 · Modified
7.8EPSS 0.008
CVE-2022-42919
Python 3.9.x before 3.9.16 and 3.10.x before 3.10.9 on Linux allows local privilege escalation in a non-default configuration. The Python multiprocessing library, when used with the forkserver start method on Linux, allows pickles to be deserialized from any user in the same machine local network namespace, which in many system configurations means any user on the same machine. Pickles can execute arbitrary code. Thus, this allows for local user privilege escalation to the user that any forkserver process is running as. Setting multiprocessing.util.abstract_sockets_supported to False is a workaround. The forkserver start method for multiprocessing is not the default start method. This issue is Linux specific because only Linux supports abstract namespace sockets. CPython before 3.9 does not make use of Linux abstract namespace sockets by default. Support for users manually specifying an abstract namespace socket was added as a bugfix in 3.7.8 and 3.8.3, but users would need to make specific uncommon API calls in order to do that in CPython before 3.9.
Published 2022-11-06 · Modified
7.8EPSS 0.007
CVE-2020-16154
The App::cpanminus package 1.7044 for Perl allows Signature Verification Bypass.
Published 2021-12-13 · Modified
7.8EPSS 0.007
CVE-2022-24052
MariaDB CONNECT Storage Engine Heap-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of SQL queries. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the service account. Was ZDI-CAN-16190.
Published 2022-02-18 · Modified
7.8EPSS 0.007
CVE-2022-24048
MariaDB CONNECT Storage Engine Stack-based Buffer Overflow Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of SQL queries. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the service account. Was ZDI-CAN-16191.
Published 2022-02-18 · Modified
7.8EPSS 0.007
CVE-2022-24051
MariaDB CONNECT Storage Engine Format String Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of SQL queries. The issue results from the lack of proper validation of a user-supplied string before using it as a format specifier. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the service account. Was ZDI-CAN-16193.
Published 2022-02-18 · Modified
7.8EPSS 0.007
CVE-2021-3903
Heap-based Buffer Overflow in vim/vim
Published 2021-10-27 · Modified
7.8EPSS 0.006
CVE-2022-24050
MariaDB CONNECT Storage Engine Use-After-Free Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of MariaDB. Authentication is required to exploit this vulnerability. The specific flaw exists within the processing of SQL queries. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the service account. Was ZDI-CAN-16207.
Published 2022-02-18 · Modified
7.8EPSS 0.006
CVE-2021-3928
Use of Uninitialized Variable in vim/vim
Published 2021-11-05 · Modified
7.8EPSS 0.006
CVE-2022-38784
Poppler prior to and including 22.08.0 contains an integer overflow in the JBIG2 decoder (JBIG2Stream::readTextRegionSeg() in JBIGStream.cc). Processing a specially crafted PDF file or JBIG2 image could lead to a crash or the execution of arbitrary code. This is similar to the vulnerability described by CVE-2022-38171 in Xpdf.
Published 2022-08-30 · Modified
7.8EPSS 0.006
CVE-2022-1733
Heap-based Buffer Overflow in vim/vim
Published 2022-05-17 · Modified
7.8EPSS 0.006
CVE-2022-27239
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
Published 2022-04-27 · Modified
7.8EPSS 0.006
CVE-2021-4010
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SProcScreenSaverSuspend function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2021-12-17 · Modified
7.8EPSS 0.006
CVE-2021-4009
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SProcXFixesCreatePointerBarrier function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2021-12-17 · Modified
7.8EPSS 0.006
CVE-2022-2819
Heap-based Buffer Overflow in vim/vim
Published 2022-08-15 · Modified
7.8EPSS 0.006
CVE-2021-3410
A flaw was found in libcaca v0.99.beta19. A buffer overflow issue in caca_resize function in libcaca/caca/canvas.c may lead to local execution of arbitrary code in the user context.
Published 2021-02-23 · Modified
7.8EPSS 0.006
CVE-2021-4011
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SwapCreateRegister function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2021-12-17 · Modified
7.8EPSS 0.006
CVE-2021-4008
A flaw was found in xorg-x11-server in versions before 21.1.2 and before 1.20.14. An out-of-bounds access can occur in the SProcRenderCompositeGlyphs function. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2021-12-17 · Modified
7.8EPSS 0.006
CVE-2022-3296
Stack-based Buffer Overflow in vim/vim
Published 2022-09-25 · Analyzed
7.8EPSS 0.006
CVE-2021-45469
In __f2fs_setxattr in fs/f2fs/xattr.c in the Linux kernel through 5.15.11, there is an out-of-bounds memory access when an inode has an invalid last xattr entry.
Published 2021-12-23 · Modified
7.8EPSS 0.005
CVE-2022-2816
Out-of-bounds Read in vim/vim
Published 2022-08-15 · Modified
7.8EPSS 0.005
CVE-2022-2946
Use After Free in vim/vim
Published 2022-08-23 · Modified
7.8EPSS 0.005
CVE-2022-3324
Stack-based Buffer Overflow in vim/vim
Published 2022-09-27 · Analyzed
7.8EPSS 0.005
CVE-2022-3234
Heap-based Buffer Overflow in vim/vim
Published 2022-09-17 · Modified
7.8EPSS 0.005
CVE-2022-3037
Use After Free in vim/vim
Published 2022-08-30 · Analyzed
7.8EPSS 0.005
CVE-2022-2817
Use After Free in vim/vim
Published 2022-08-15 · Modified
7.8EPSS 0.005
CVE-2022-2845
Improper Validation of Specified Quantity in Input in vim/vim
Published 2022-08-17 · Modified
7.8EPSS 0.005
CVE-2022-2889
Use After Free in vim/vim
Published 2022-08-19 · Modified
7.8EPSS 0.005
CVE-2022-3297
Use After Free in vim/vim
Published 2022-09-25 · Analyzed
7.8EPSS 0.005
CVE-2021-41103
Insufficiently restricted permissions on plugin directories
Published 2021-10-04 · Modified
7.8EPSS 0.005
CVE-2022-3352
Use After Free in vim/vim
Published 2022-09-29 · Modified
7.8EPSS 0.005
CVE-2022-3235
Use After Free in vim/vim
Published 2022-09-18 · Modified
7.8EPSS 0.005
CVE-2021-46790
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however, it is shipped by some Linux distributions.
Published 2022-05-02 · Modified
7.8EPSS 0.005
CVE-2021-45082
An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_invalid_imports can allow Cheetah code to import Python modules via the "#from MODULE import" substring. (Only lines beginning with #import are blocked.)
Published 2022-02-18 · Modified
7.8EPSS 0.005
CVE-2022-3099
Use After Free in vim/vim
Published 2022-09-03 · Modified
7.8EPSS 0.005
CVE-2021-45417
AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.
Published 2022-01-20 · Modified
7.8EPSS 0.005
CVE-2022-23613
Privilege escalation on xrdp
Published 2022-02-07 · Modified
7.8EPSS 0.005
CVE-2022-3256
Use After Free in vim/vim
Published 2022-09-22 · Analyzed
7.8EPSS 0.005
CVE-2021-33289
In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
Published 2021-09-07 · Modified
7.8EPSS 0.005
← Prev11 / 28Next →