VendorsFedora Projectfedora34
Vulnerabilities

Fedora Project Fedora 34

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1181CVEs
CVE-2022-1632
An Improper Certificate Validation attack was found in Openshift. A re-encrypt Route with destinationCACertificate explicitly set to the default serviceCA skips internal Service TLS certificate validation. This flaw allows an attacker to exploit an invalid certificate, resulting in a loss of confidentiality.
Published 2022-09-01 · Modified
6.5EPSS 0.004
CVE-2022-20796
ClamAV Truncated File Denial of Service Vulnerability Affecting Cisco Products: April 2022
Published 2022-05-04 · Modified
6.5EPSS 0.004
CVE-2021-0086
Observable response discrepancy in floating-point operations for some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Published 2021-06-09 · Modified
6.5EPSS 0.003
CVE-2021-0089
Observable response discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.
Published 2021-06-09 · Modified
6.5EPSS 0.003
CVE-2021-3941
In ImfChromaticities.cpp routine RGBtoXYZ(), there are some division operations such as `float Z = (1 - chroma.white.x - chroma.white.y) * Y / chroma.white.y;` and `chroma.green.y * (X + Z))) / d;` but the divisor is not checked for a 0 value. A specially crafted file could trigger a divide-by-zero condition which could affect the availability of programs linked with OpenEXR.
Published 2022-03-25 · Modified
6.5EPSS 0.003
CVE-2021-22004
An issue was discovered in SaltStack Salt before 3003.3. The salt minion installer will accept and use a minion config file at C:\salt\conf if that file is in place before the installer is run. This allows for a malicious actor to subvert the proper behaviour of the given minion software.
Published 2021-09-08 · Modified
6.4EPSS 0.004
CVE-2021-35937
A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that were introduced in response to CVE-2017-7500 and CVE-2017-7501, potentially gaining root privileges. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Published 2022-08-25 · Modified
6.4EPSS 0.003
CVE-2021-3700
A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
Published 2022-02-24 · Modified
6.4EPSS 0.003
CVE-2021-41091
Insufficiently restricted permissions on data directory in Docker Engine
Published 2021-10-04 · Modified
6.3EPSS 0.028
CVE-2021-21334
environment variable leak
Published 2021-03-10 · Modified
6.3EPSS 0.020
CVE-2022-21254
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.27 and prior. Difficult to exploit vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 5.3 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H).
Published 2022-01-19 · Modified
6.3EPSS 0.017
CVE-2022-23133
Stored XSS in host groups configuration window in Zabbix Frontend
Published 2022-01-13 · Modified
6.3EPSS 0.010
CVE-2021-21392
Open redirect via transitional IPv6 addresses on dual-stack networks
Published 2021-04-12 · Modified
6.3EPSS 0.009
CVE-2021-3802
A vulnerability found in udisks2. This flaw allows an attacker to input a specially crafted image file/USB leading to kernel panic. The highest threat from this vulnerability is to system availability.
Published 2021-11-29 · Modified
6.3EPSS 0.008
CVE-2021-39219
Wrong type for `Linker`-define functions when used across two `Engine`s
Published 2021-09-17 · Modified
6.3EPSS 0.004
CVE-2021-39216
Use after free passing `externref`s to Wasm in Wasmtime
Published 2021-09-17 · Modified
6.3EPSS 0.003
CVE-2021-39218
Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime
Published 2021-09-17 · Modified
6.3EPSS 0.003
CVE-2021-41089
`docker cp` allows unexpected chmod of host files
Published 2021-10-04 · Modified
6.3EPSS 0.003
CVE-2022-0696
NULL Pointer Dereference in vim/vim
Published 2022-02-21 · Modified
6.2EPSS 0.015
CVE-2021-38000
Insufficient validation of untrusted input in Intents in Google Chrome on Android prior to 95.0.4638.69 allowed a remote attacker to arbitrarily browser to a malicious URL via a crafted HTML page.
Published 2021-11-23 · Analyzed
6.1KEVEPSS 0.049
CVE-2021-28957
An XSS vulnerability was discovered in python-lxml's clean module versions before 4.6.3. When disabling the safe_attrs_only and forms arguments, the Cleaner class does not remove the formaction attribute allowing for JS to bypass the sanitizer. A remote attacker could exploit this flaw to run arbitrary JS code on users who interact with incorrectly sanitized HTML. This issue is patched in lxml 4.6.3.
Published 2021-03-21 · Modified
6.1EPSS 0.040
CVE-2021-33829
A cross-site scripting (XSS) vulnerability in the HTML Data Processor in CKEditor 4 4.14.0 through 4.16.x before 4.16.1 allows remote attackers to inject executable JavaScript code through a crafted comment because --!> is mishandled.
Published 2021-06-09 · Modified
6.1EPSS 0.032
CVE-2021-32052
In Django 2.2 before 2.2.22, 3.1 before 3.1.10, and 3.2 before 3.2.2 (with Python 3.9.5+), URLValidator does not prohibit newlines and tabs (unless the URLField form field is used). If an application uses values with newlines in an HTTP response, header injection can occur. Django itself is unaffected because HttpResponse prohibits newlines in HTTP headers.
Published 2021-05-06 · Modified
6.1EPSS 0.032
CVE-2021-32786
Open Redirect in oidc_validate_redirect_url()
Published 2021-07-22 · Modified
6.1EPSS 0.024
CVE-2021-21330
Open redirect vulnerability in aiohttp
Published 2021-02-26 · Modified
6.1EPSS 0.019
CVE-2021-21273
Open redirects on some federation and push requests
Published 2021-02-26 · Modified
6.1EPSS 0.018
CVE-2021-32792
XSS vulnerability when using OIDCPreservePost On in mod_auth_openidc
Published 2021-07-26 · Modified
6.1EPSS 0.015
CVE-2021-30890
A logic issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, iOS 15.1 and iPadOS 15.1, watchOS 8.1, tvOS 15.1. Processing maliciously crafted web content may lead to universal cross site scripting.
Published 2021-08-24 · Modified
6.1EPSS 0.015
CVE-2021-41798
MediaWiki before 1.36.2 allows XSS. Month related MediaWiki messages are not escaped before being used on the Special:Search results page.
Published 2021-10-11 · Modified
6.1EPSS 0.014
CVE-2022-28919
HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the function _generateFilename.
Published 2022-05-12 · Modified
6.1EPSS 0.014
CVE-2021-23648
Cross-site Scripting (XSS)
Published 2022-03-16 · Modified
6.1EPSS 0.014
CVE-2021-30157
An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. On ChangesList special pages such as Special:RecentChanges and Special:Watchlist, some of the rcfilters-filter-* label messages are output in HTML unescaped, leading to XSS.
Published 2021-04-06 · Modified
6.1EPSS 0.014
CVE-2021-21333
HTML injection in email and account expiry notifications
Published 2021-03-26 · Modified
6.1EPSS 0.014
CVE-2021-30154
An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. On Special:NewFiles, all the mediastatistics-header-* messages are output in HTML unescaped, leading to XSS.
Published 2021-04-06 · Modified
6.1EPSS 0.013
CVE-2021-44025
Roundcube before 1.3.17 and 1.4.x before 1.4.12 is prone to XSS in handling an attachment's filename extension when displaying a MIME type warning message.
Published 2021-11-19 · Modified
6.1EPSS 0.012
CVE-2021-37746
textview_uri_security_check in textview.c in Claws Mail before 3.18.0, and Sylpheed through 3.7.0, does not have sufficient link checks before accepting a click.
Published 2021-07-30 · Modified
6.1EPSS 0.012
CVE-2022-25601
WordPress Contact Form X plugin <= 2.4 - Reflected Cross-Site Scripting (XSS) vulnerability
Published 2022-03-11 · Modified
6.1EPSS 0.010
CVE-2022-23598
Reflected XSS vulnerability when rendering error messages in laminas-form
Published 2022-01-28 · Modified
6.1EPSS 0.010
CVE-2021-37999
Insufficient data validation in New Tab Page in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to inject arbitrary scripts or HTML in a new browser tab via a crafted HTML page.
Published 2021-11-23 · Modified
6.1EPSS 0.010
CVE-2020-25664
In WriteOnePNGImage() of the PNG coder at coders/png.c, an improper call to AcquireVirtualMemory() and memset() allows for an out-of-bounds write later when PopShortPixel() from MagickCore/quantum-private.h is called. The patch fixes the calls by adding 256 to rowbytes. An attacker who is able to supply a specially crafted image could affect availability with a low impact to data integrity. This flaw affects ImageMagick versions prior to 6.9.10-68 and 7.0.8-68.
Published 2020-12-08 · Modified
6.1EPSS 0.007
← Prev22 / 30Next →