VendorsFedora Projectfedora33
Vulnerabilities

Fedora Project Fedora 33

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1207CVEs
CVE-2021-21219
Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
Published 2021-04-26 · Modified
5.5EPSS 0.012
CVE-2021-32617
Denial of service in Exiv2
Published 2021-05-17 · Modified
5.5EPSS 0.012
CVE-2021-32613
In radare2 through 5.3.0 there is a double free vulnerability in the pyc parse via a crafted file which can lead to DoS.
Published 2021-05-14 · Modified
5.5EPSS 0.012
CVE-2021-23215
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR.
Published 2021-06-08 · Modified
5.5EPSS 0.011
CVE-2020-15989
Uninitialized data in PDFium in Google Chrome prior to 86.0.4240.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted PDF file.
Published 2020-11-03 · Modified
5.5EPSS 0.011
CVE-2021-29463
Out-of-bounds read in Exiv2::WebPImage::doWriteMetadata
Published 2021-04-30 · Modified
5.5EPSS 0.011
CVE-2021-34334
Denial of service due to integer overflow in loop counter
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-37622
Denial of service due to infinite loop in JpegBase::printStructure (#1)
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-3272
jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number of channels and the number of image components.
Published 2021-01-27 · Modified
5.5EPSS 0.011
CVE-2021-32815
Denial of service due to assertion failure in crwimage_int.cpp
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-37621
Denial of service due to infinite loop in Image::printIFDStructure
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-26260
An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1. An attacker could use this flaw to crash an application compiled with OpenEXR. This is a different flaw from CVE-2021-23215.
Published 2021-06-08 · Modified
5.5EPSS 0.011
CVE-2021-26927
A flaw was found in jasper before 2.0.25. A null pointer dereference in jp2_decode in jp2_dec.c may lead to program crash and denial of service.
Published 2021-02-23 · Modified
5.5EPSS 0.011
CVE-2021-29155
An issue was discovered in the Linux kernel through 5.11.x. kernel/bpf/verifier.c performs undesirable out-of-bounds speculation on pointer arithmetic, leading to side-channel attacks that defeat Spectre mitigations and obtain sensitive information from kernel memory. Specifically, for sequences of pointer arithmetic operations, the pointer modification performed by the first operation is not correctly accounted for when restricting subsequent operations.
Published 2021-04-20 · Modified
5.5EPSS 0.011
CVE-2020-16592
A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm-new, that can cause a denial of service via a crafted file.
Published 2020-12-09 · Modified
5.5EPSS 0.011
CVE-2021-3630
An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djvu file which may lead to crash and segmentation fault. This flaw affects DjVuLibre versions prior to 3.5.28.
Published 2021-06-30 · Modified
5.5EPSS 0.011
CVE-2021-37623
Denial of service due to infinite loop in JpegBase::printStructure (#2)
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-37620
Out-of-bounds read in XmpTextValue::read()
Published 2021-08-09 · Modified
5.5EPSS 0.011
CVE-2021-30501
An assertion abort was found in upx MemBuffer::alloc() in mem.cpp, in version UPX 4.0.0. The flow allows attackers to cause a denial of service (abort) via a crafted file.
Published 2021-05-26 · Modified
5.5EPSS 0.010
CVE-2021-37616
Null pointer dereference in Exiv2::Internal::resolveLens0x8ff
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2020-26519
Artifex MuPDF before 1.18.0 has a heap based buffer over-write when parsing JBIG2 files allowing attackers to cause a denial of service.
Published 2020-10-02 · Modified
5.5EPSS 0.010
CVE-2020-25725
In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes an `heap-use-after-free` problem. The codes of a previous fix for nested Type 3 characters wasn't correctly handling the case where a Type 3 char referred to another char in the same Type 3 font.
Published 2020-11-21 · Modified
5.5EPSS 0.010
CVE-2021-37615
Null pointer dereference in Exiv2::Internal::resolveLens0x319
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-37618
Out-of-bounds read in Exiv2::Jp2Image::printStructure
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-37619
Out-of-bounds read in Exiv2::Jp2Image::encodeJp2Header
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2020-16269
radare2 4.5.0 misparses DWARF information in executable files, causing a segmentation fault in parse_typedef in type_dwarf.c via a malformed DW_AT_name in the .debug_info section.
Published 2020-08-03 · Modified
5.5EPSS 0.010
CVE-2021-34335
Denial of service due to FPE in Exiv2::Internal::resolveLens0xffff
Published 2021-08-09 · Modified
5.5EPSS 0.010
CVE-2021-28675
An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Image.open prior to Image.load.
Published 2021-06-02 · Modified
5.5EPSS 0.010
CVE-2021-3443
A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the JP2 image format decoder. A specially crafted JP2 image file could cause an application using the Jasper library to crash when opened.
Published 2021-03-25 · Modified
5.5EPSS 0.008
CVE-2021-28678
An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decoder could be run a large number of times on empty data.
Published 2021-06-02 · Modified
5.5EPSS 0.007
CVE-2021-30471
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo/doc/PdfNamesTree.cpp can lead to a stack overflow.
Published 2021-05-26 · Modified
5.5EPSS 0.007
CVE-2021-30469
A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file.
Published 2021-05-26 · Modified
5.5EPSS 0.007
CVE-2021-30470
A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextVariant() and PdfTokenizer::ReadDataType() functions can lead to a stack overflow.
Published 2021-05-26 · Modified
5.5EPSS 0.007
CVE-2021-3421
A flaw was found in the RPM package in the read functionality. This flaw allows an attacker who can convince a victim to install a seemingly verifiable package or compromise an RPM repository, to cause RPM database corruption. The highest threat from this vulnerability is to data integrity. This flaw affects RPM versions before 4.17.0-alpha.
Published 2021-05-19 · Modified
5.5EPSS 0.007
CVE-2020-28928
In musl libc through 1.2.1, wcsnrtombs mishandles particular combinations of destination buffer size and source character limit, as demonstrated by an invalid write access (buffer overflow).
Published 2020-11-24 · Modified
5.5EPSS 0.007
CVE-2020-14323
A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could use this flaw to crash the winbind service causing denial of service.
Published 2020-10-29 · Modified
5.5EPSS 0.006
CVE-2021-26314
AMD Speculative execution with Floating-Point Value Injection
Published 2021-06-09 · Modified
5.5EPSS 0.006
CVE-2021-26931
An issue was discovered in the Linux kernel 2.6.39 through 5.10.16, as used in Xen. Block, net, and SCSI backends consider certain errors a plain bug, deliberately causing a kernel crash. For errors potentially being at least under the influence of guests (such as out of memory conditions), it isn't correct to assume a plain bug. Memory allocations potentially causing such crashes occur only when Linux is running in PV mode, though. This affects drivers/block/xen-blkback/blkback.c and drivers/xen/xen-scsiback.c.
Published 2021-02-17 · Modified
5.5EPSS 0.006
CVE-2020-24332
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the creation of the system.data file is prone to symlink attacks. The tss user can be used to create or corrupt existing files, which could possibly lead to a DoS attack.
Published 2020-08-13 · Modified
5.5EPSS 0.006
CVE-2021-3744
A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, which allows attackers to cause a denial of service (memory consumption). This vulnerability is similar with the older CVE-2019-18808.
Published 2022-03-04 · Modified
5.5EPSS 0.005
← Prev24 / 31Next →