VendorsFedora Projectfedora37
Vulnerabilities

Fedora Project Fedora 37

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

698CVEs
CVE-2023-4806
Glibc: potential use-after-free in getaddrinfo()
Published 2023-09-18 · Modified
5.9EPSS 0.016
CVE-2023-22053
Vulnerability in the MySQL Server product of Oracle MySQL (component: Client programs). Supported versions that are affected are 5.7.42 and prior and 8.0.33 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server and unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 5.9 (Confidentiality and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:H).
Published 2023-07-18 · Modified
5.9EPSS 0.013
CVE-2023-5981
Gnutls: timing side-channel in the rsa-psk authentication
Published 2023-11-28 · Analyzed
5.9EPSS 0.013
CVE-2021-20251
A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.
Published 2023-03-06 · Modified
5.9EPSS 0.008
CVE-2023-32570
VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit.
Published 2023-05-10 · Modified
5.9EPSS 0.007
CVE-2022-39316
Out of bound read in FreeRDP
Published 2022-11-16 · Modified
5.7EPSS 0.011
CVE-2022-39318
Division by zero in urbdrc channel in FreeRDP
Published 2022-11-16 · Modified
5.7EPSS 0.010
CVE-2022-39347
Missing path sanitation with `drive` channel in FreeRDP
Published 2022-11-16 · Modified
5.7EPSS 0.010
CVE-2022-33748
lock order inversion in transitive grant copy handling As part of XSA-226 a missing cleanup call was inserted on an error handling path. While doing so, locking requirements were not paid attention to. As a result two cooperating guests granting each other transitive grants can cause locks to be acquired nested within one another, but in respectively opposite order. With suitable timing between the involved grant copy operations this may result in the locking up of a CPU.
Published 2022-10-11 · Modified
5.6EPSS 0.003
CVE-2023-4155
Sev-es / sev-snp vmgexit double fetch vulnerability
Published 2023-09-13 · Modified
5.6EPSS 0.002
CVE-2023-20588
Speculative Leaks
Published 2023-08-08 · Modified
5.5EPSS 0.113
CVE-2023-38633
A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local filesystem outside of the expected area), as demonstrated by href=".?../../../../../../../../../../etc/passwd" in an xi:include element.
Published 2023-07-22 · Modified
5.5EPSS 0.023
CVE-2021-45958
UltraJSON (aka ujson) through 5.1.0 has a stack-based buffer overflow in Buffer_AppendIndentUnchecked (called from encode). Exploitation can, for example, use a large amount of indentation.
Published 2021-12-31 · Modified
5.5EPSS 0.016
CVE-2022-48303
GNU Tar through 1.34 has a one-byte out-of-bounds read that results in use of uninitialized memory for a conditional jump. Exploitation to change the flow of control has not been demonstrated. The issue occurs in from_header in list.c via a V7 archive in which mtime has approximately 11 whitespace characters.
Published 2023-01-30 · Modified
5.5EPSS 0.015
CVE-2022-39253
Git subject to exposure of sensitive information via local clone of symbolic links
Published 2022-10-19 · Modified
5.5EPSS 0.013
CVE-2023-21929
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.1 Base Score 5.5 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H).
Published 2023-04-18 · Modified
5.5EPSS 0.013
CVE-2022-30974
compile in regexp.c in Artifex MuJS through 1.2.0 results in stack consumption because of unlimited recursion, a different issue than CVE-2019-11413.
Published 2022-05-18 · Modified
5.5EPSS 0.011
CVE-2022-30975
In Artifex MuJS through 1.2.0, jsP_dumpsyntax in jsdump.c has a NULL pointer dereference, as demonstrated by mujs-pp.
Published 2022-05-18 · Modified
5.5EPSS 0.011
CVE-2022-27939
tcprewrite in Tcpreplay 4.4.1 has a reachable assertion in get_layer4_v6 in common/get.c.
Published 2022-03-26 · Modified
5.5EPSS 0.010
CVE-2023-31489
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function.
Published 2023-05-09 · Modified
5.5EPSS 0.010
CVE-2023-34151
A vulnerability was found in ImageMagick. This security flaw ouccers as an undefined behaviors of casting double to size_t in svg, mvg and other coders (recurring bugs of CVE-2022-32546).
Published 2023-05-30 · Analyzed
5.5EPSS 0.010
CVE-2023-1289
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in "/tmp," resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.
Published 2023-03-23 · Modified
5.5EPSS 0.009
CVE-2022-39320
Heap buffer overflow in urbdrc channel
Published 2022-11-16 · Modified
5.5EPSS 0.007
CVE-2022-31628
phar wrapper can occur dos when using quine gzip file
Published 2022-09-28 · Modified
5.5EPSS 0.006
CVE-2022-48064
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_alt at dwarf2.c. The attacker could supply a crafted ELF file and cause a DNS attack.
Published 2023-08-22 · Modified
5.5EPSS 0.006
CVE-2022-42721
A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code.
Published 2022-10-13 · Modified
5.5EPSS 0.006
CVE-2023-1906
A heap-based buffer overflow issue was discovered in ImageMagick's ImportMultiSpectralQuantum() function in MagickCore/quantum-import.c. An attacker could pass specially crafted file to convert, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.
Published 2023-04-12 · Modified
5.5EPSS 0.006
CVE-2022-42722
In the Linux kernel 5.8 through 5.19.x before 5.19.16, local attackers able to inject WLAN frames into the mac80211 stack could cause a NULL pointer dereference denial-of-service attack against the beacon protection of P2P devices.
Published 2022-10-13 · Modified
5.5EPSS 0.006
CVE-2022-30674
Adobe InDesign 2022 Out-of-Bound Read Memory leak
Published 2022-09-16 · Modified
5.5EPSS 0.005
CVE-2022-1615
In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.
Published 2022-09-01 · Analyzed
5.5EPSS 0.005
CVE-2023-3195
A stack-based buffer overflow issue was found in ImageMagick's coders/tiff.c. This flaw allows an attacker to trick the user into opening a specially crafted malicious tiff file, causing an application to crash, resulting in a denial of service.
Published 2023-06-16 · Modified
5.5EPSS 0.005
CVE-2022-3213
A heap buffer overflow issue was found in ImageMagick. When an application processes a malformed TIFF file, it could lead to undefined behavior or a crash causing a denial of service.
Published 2022-09-19 · Modified
5.5EPSS 0.005
CVE-2022-35015
Advancecomp v2.3 was discovered to contain a heap buffer overflow via le_uint32_read at /lib/endianrw.h.
Published 2022-08-29 · Modified
5.5EPSS 0.005
CVE-2022-35016
Advancecomp v2.3 was discovered to contain a heap buffer overflow.
Published 2022-08-29 · Modified
5.5EPSS 0.005
CVE-2022-35017
Advancecomp v2.3 was discovered to contain a heap buffer overflow.
Published 2022-08-29 · Modified
5.5EPSS 0.005
CVE-2022-35020
Advancecomp v2.3 was discovered to contain a heap buffer overflow via the component __interceptor_memcpy at /sanitizer_common/sanitizer_common_interceptors.inc.
Published 2022-08-29 · Modified
5.5EPSS 0.005
CVE-2022-35014
Advancecomp v2.3 contains a segmentation fault.
Published 2022-08-29 · Modified
5.5EPSS 0.004
CVE-2022-35019
Advancecomp v2.3 was discovered to contain a segmentation fault.
Published 2022-08-29 · Modified
5.5EPSS 0.004
CVE-2022-35018
Advancecomp v2.3 was discovered to contain a segmentation fault.
Published 2022-08-29 · Modified
5.5EPSS 0.004
CVE-2022-4285
An illegal memory access flaw was found in the binutils package. Parsing an ELF file containing corrupt symbol version information may result in a denial of service. This issue is the result of an incomplete fix for CVE-2020-16599.
Published 2023-01-27 · Modified
5.5EPSS 0.004
← Prev14 / 18Next →