VendorsFedora Projectfedora37
Vulnerabilities

Fedora Project Fedora 37

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

698CVEs
CVE-2022-42313
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of memory, eventually resulting in a Denial of Service (DoS) of xenstored. There are multiple ways how guests can cause large memory allocations in xenstored: - - by issuing new requests to xenstored without reading the responses, causing the responses to be buffered in memory - - by causing large number of watch events to be generated via setting up multiple xenstore watches and then e.g. deleting many xenstore nodes below the watched path - - by creating as many nodes as allowed with the maximum allowed size and path length in as many transactions as possible - - by accessing many nodes inside a transaction
Published 2022-11-01 · Modified
6.5EPSS 0.003
CVE-2022-42315
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of memory, eventually resulting in a Denial of Service (DoS) of xenstored. There are multiple ways how guests can cause large memory allocations in xenstored: - - by issuing new requests to xenstored without reading the responses, causing the responses to be buffered in memory - - by causing large number of watch events to be generated via setting up multiple xenstore watches and then e.g. deleting many xenstore nodes below the watched path - - by creating as many nodes as allowed with the maximum allowed size and path length in as many transactions as possible - - by accessing many nodes inside a transaction
Published 2022-11-01 · Modified
6.5EPSS 0.003
CVE-2022-42316
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of memory, eventually resulting in a Denial of Service (DoS) of xenstored. There are multiple ways how guests can cause large memory allocations in xenstored: - - by issuing new requests to xenstored without reading the responses, causing the responses to be buffered in memory - - by causing large number of watch events to be generated via setting up multiple xenstore watches and then e.g. deleting many xenstore nodes below the watched path - - by creating as many nodes as allowed with the maximum allowed size and path length in as many transactions as possible - - by accessing many nodes inside a transaction
Published 2022-11-01 · Modified
6.5EPSS 0.003
CVE-2022-42317
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of memory, eventually resulting in a Denial of Service (DoS) of xenstored. There are multiple ways how guests can cause large memory allocations in xenstored: - - by issuing new requests to xenstored without reading the responses, causing the responses to be buffered in memory - - by causing large number of watch events to be generated via setting up multiple xenstore watches and then e.g. deleting many xenstore nodes below the watched path - - by creating as many nodes as allowed with the maximum allowed size and path length in as many transactions as possible - - by accessing many nodes inside a transaction
Published 2022-11-01 · Modified
6.5EPSS 0.003
CVE-2022-42318
Xenstore: guests can let run xenstored out of memory T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Malicious guests can cause xenstored to allocate vast amounts of memory, eventually resulting in a Denial of Service (DoS) of xenstored. There are multiple ways how guests can cause large memory allocations in xenstored: - - by issuing new requests to xenstored without reading the responses, causing the responses to be buffered in memory - - by causing large number of watch events to be generated via setting up multiple xenstore watches and then e.g. deleting many xenstore nodes below the watched path - - by creating as many nodes as allowed with the maximum allowed size and path length in as many transactions as possible - - by accessing many nodes inside a transaction
Published 2022-11-01 · Modified
6.5EPSS 0.003
CVE-2023-31130
Buffer Underwrite in ares_inet_net_pton()
Published 2023-05-25 · Modified
6.4EPSS 0.004
CVE-2022-3190
Infinite loop in the F5 Ethernet Trailer protocol dissector in Wireshark 3.6.0 to 3.6.7 and 3.4.0 to 3.4.15 allows denial of service via packet injection or crafted capture file
Published 2022-09-13 · Modified
6.3EPSS 0.023
CVE-2022-36109
Moby vulnerability relating to supplementary group permissions
Published 2022-09-09 · Modified
6.3EPSS 0.010
CVE-2022-2980
NULL Pointer Dereference in vim/vim
Published 2022-08-25 · Modified
6.3EPSS 0.009
CVE-2023-39365
Unchecked regular expressions can lead to SQL Injection and data leakage in Cacti
Published 2023-09-05 · Modified
6.3EPSS 0.009
CVE-2023-1544
Qemu: pvrdma: out-of-bounds read in pvrdma_ring_next_elem_read()
Published 2023-03-23 · Modified
6.3EPSS 0.003
CVE-2023-1611
A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash the system and possibly cause a kernel information lea
Published 2023-04-03 · Modified
6.3EPSS 0.002
CVE-2023-5441
NULL Pointer Dereference in vim/vim
Published 2023-10-05 · Modified
6.2EPSS 0.004
CVE-2023-32681
Unintended leak of Proxy-Authorization header in requests
Published 2023-05-26 · Modified
6.1EPSS 0.030
CVE-2022-31160
jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text label
Published 2022-07-20 · Modified
6.1EPSS 0.026
CVE-2022-42799
The issue was addressed with improved UI handling. This issue is fixed in tvOS 16.1, macOS Ventura 13, watchOS 9.1, Safari 16.1, iOS 16.1 and iPadOS 16. Visiting a malicious website may lead to user interface spoofing.
Published 2022-11-01 · Modified
6.1EPSS 0.013
CVE-2022-3123
Cross-site Scripting (XSS) - Reflected in splitbrain/dokuwiki
Published 2022-09-05 · Modified
6.1EPSS 0.011
CVE-2023-5480
Inappropriate implementation in Payments in Google Chrome prior to 119.0.6045.105 allowed a remote attacker to bypass XSS preventions via a malicious file. (Chromium security severity: High)
Published 2023-11-01 · Modified
6.1EPSS 0.011
CVE-2022-34911
An issue was discovered in MediaWiki before 1.35.7, 1.36.x and 1.37.x before 1.37.3, and 1.38.x before 1.38.1. XSS can occur in configurations that allow a JavaScript payload in a username. After account creation, when it sets the page title to "Welcome" followed by the username, the username is not escaped: SpecialCreateAccount::successfulAction() calls ::showSuccessPage() with a message as second parameter, and OutputPage::setPageTitle() uses text().
Published 2022-07-02 · Modified
6.1EPSS 0.011
CVE-2022-34912
An issue was discovered in MediaWiki before 1.37.3 and 1.38.x before 1.38.1. The contributions-title, used on Special:Contributions, is used as page title without escaping. Hence, in a non-default configuration where a username contains HTML entities, it won't be escaped.
Published 2022-07-02 · Modified
6.1EPSS 0.011
CVE-2023-39513
Stored Cross-site Scripting on host.php verbose data-query debug view in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.009
CVE-2023-39360
Reflected Cross-site Scripting in graphs_new.php in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.009
CVE-2023-39366
Stored Cross-site Scripting in data_sources.php through Device-Name in 'select' input in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.009
CVE-2023-39514
Stored Cross-site Scripting on graphs.php data template formated name view in Cacti
Published 2023-09-05 · Analyzed
6.1EPSS 0.009
CVE-2023-39516
Stored Cross-Site-Scripting on data_sources.php debug html-block in Cacti
Published 2023-09-05 · Analyzed
6.1EPSS 0.008
CVE-2023-39515
Stored Cross-site Scripting on data_debug.php datasource path view in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.008
CVE-2023-39512
Stored Cross-site Scripting on data_sources.php device name view in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.008
CVE-2023-39510
Stored Cross-site Scripting in reports_admin.php through Device-Name in 'select' input in Cacti
Published 2023-09-05 · Modified
6.1EPSS 0.008
CVE-2022-40626
Reflected XSS in the backurl parameter of Zabbix Frontend
Published 2022-09-14 · Modified
6.1EPSS 0.008
CVE-2023-39511
Stored Cross-Site-Scripting on reports_admin.php device name in Cacti
Published 2023-09-06 · Analyzed
6.1EPSS 0.008
CVE-2023-28439
ckeditor4 plugins vulnerable to cross-site scripting caused by the editor instance destroying process
Published 2023-03-22 · Modified
6.1EPSS 0.007
CVE-2022-45150
A reflected cross-site scripting vulnerability was discovered in Moodle. This flaw exists due to insufficient sanitization of user-supplied data in policy tool. An attacker can trick the victim to open a specially crafted link that executes an arbitrary HTML and script code in user's browser in context of vulnerable website. This vulnerability may allow an attacker to perform cross-site scripting (XSS) attacks to gain access potentially sensitive information and modification of web pages.
Published 2022-11-23 · Modified
6.1EPSS 0.007
CVE-2022-46391
AWStats 7.x through 7.8 allows XSS in the hostinfo plugin due to printing a response from Net::XWhois without proper checks.
Published 2022-12-04 · Modified
6.1EPSS 0.007
CVE-2023-47272
Roundcube 1.5.x before 1.5.6 and 1.6.x before 1.6.5 allows XSS via a Content-Type or Content-Disposition header (used for attachment preview or download).
Published 2023-11-05 · Modified
6.1EPSS 0.006
CVE-2023-22911
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1. E-Widgets does widget replacement in HTML attributes, which can lead to XSS, because widget authors often do not expect that their widget is executed in an HTML attribute context.
Published 2023-01-10 · Modified
6.1EPSS 0.006
CVE-2023-5547
Moodle: xss risk when previewing data in course upload tool
Published 2023-11-09 · Modified
6.1EPSS 0.005
CVE-2023-23908
Improper access control in some 3rd Generation Intel(R) Xeon(R) Scalable processors may allow a privileged user to potentially enable information disclosure via local access.
Published 2023-08-11 · Modified
6.0EPSS 0.002
CVE-2023-45802
Apache HTTP Server: HTTP/2 stream memory not reclaimed right away on RST
Published 2023-10-23 · Analyzed
5.9EPSS 0.030
CVE-2023-28321
An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`.
Published 2023-05-26 · Modified
5.9EPSS 0.018
CVE-2022-2127
Samba: out-of-bounds read in winbind auth_crap
Published 2023-07-20 · Modified
5.9EPSS 0.017
← Prev13 / 18Next →