VendorsFedora Projectfedora40
Vulnerabilities

Fedora Project Fedora 40

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

244CVEs
CVE-2024-5837
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5833
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5838
Type Confusion in V8 in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5835
Heap buffer overflow in Tab Groups in Google Chrome prior to 126.0.6478.54 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5836
Inappropriate Implementation in DevTools in Google Chrome prior to 126.0.6478.54 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5839
Inappropriate Implementation in Memory Allocator in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5831
Use after free in Dawn in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5842
Use after free in Browser UI in Google Chrome prior to 126.0.6478.54 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5832
Use after free in Dawn in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5843
Inappropriate implementation in Downloads in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to obfuscate security UI via a malicious file. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5847
Use after free in PDFium in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5846
Use after free in PDFium in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-5845
Use after free in Audio in Google Chrome prior to 126.0.6478.54 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. (Chromium security severity: Medium)
Published 2024-06-11 · Modified
8.8EPSS 0.005
CVE-2024-38276
moodle: CSRF risks due to misuse of confirm_sesskey
Published 2024-06-18 · Modified
8.8EPSS 0.005
CVE-2024-2398
HTTP/2 push headers memory-leak
Published 2024-03-27 · Analyzed
8.6EPSS 0.361
CVE-2024-25713
yyjson through 0.8.0 has a double free, leading to remote code execution in some cases, because the pool_free function lacks loop checks. (pool_free is part of the pool series allocator, along with pool_malloc and pool_realloc.)
Published 2024-02-11 · Modified
8.6EPSS 0.018
CVE-2024-34402
An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long keys or values, with a resultant buffer overflow.
Published 2024-05-03 · Modified
8.6EPSS 0.012
CVE-2024-32462
Flatpak vulnerable to a sandbox escape via RequestBackground portal due to bad argument parsing
Published 2024-04-18 · Analyzed
8.4EPSS 0.005
CVE-2024-28960
An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.
Published 2024-03-29 · Modified
8.2EPSS 0.008
CVE-2024-27018
netfilter: br_netfilter: skip conntrack input hook for promisc packets
Published 2024-05-01 · Modified
8.2EPSS 0.006
CVE-2024-2887
Type Confusion in WebAssembly in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
Published 2024-03-26 · Modified
8.1EPSS 0.179
CVE-2024-23263
A logic issue was addressed with improved validation. This issue is fixed in Safari 17.4, iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing maliciously crafted web content may prevent Content Security Policy from being enforced.
Published 2024-03-08 · Modified
8.1EPSS 0.015
CVE-2024-32004
Git vulnerable to Remote Code Execution while cloning special-crafted local repositories
Published 2024-05-14 · Analyzed
8.1EPSS 0.014
CVE-2023-2794
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_deliver() function
Published 2024-04-10 · Modified
8.1EPSS 0.013
CVE-2023-4234
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_submit_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.011
CVE-2023-4233
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the sms_decode_address_field() function
Published 2024-04-17 · Modified
8.1EPSS 0.010
CVE-2023-4232
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_status_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.010
CVE-2023-4235
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_deliver_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.009
CVE-2024-27834
The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, watchOS 10.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
Published 2024-05-13 · Modified
8.1EPSS 0.006
CVE-2024-27398
Bluetooth: Fix use-after-free bugs caused by sco_sock_timeout
Published 2024-05-13 · Modified
8.0EPSS 0.008
CVE-2023-50009
FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5 component.
Published 2024-04-19 · Modified
8.0EPSS 0.004
CVE-2023-49528
Buffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to execute arbitrary code and cause a denial of service (DoS) via the af_dialoguenhance.c:261:5 in the de_stereo component.
Published 2024-04-12 · Modified
8.0EPSS 0.004
CVE-2023-49501
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_output function in the libavfilter/asrc_afirsrc.c:495:30 component.
Published 2024-04-19 · Modified
8.0EPSS 0.004
CVE-2023-51795
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showspectrum.c:1789:52 component in showspectrumpic_request_frame
Published 2024-04-19 · Analyzed
8.0EPSS 0.003
CVE-2024-26256
Libarchive Remote Code Execution Vulnerability
Published 2024-04-09 · Analyzed
7.8EPSS 0.848
CVE-2024-2955
Mismatched Memory Management Routines in Wireshark
Published 2024-03-26 · Modified
7.8EPSS 0.014
CVE-2024-32465
Git's protections for cloning untrusted repositories can be bypassed
Published 2024-05-14 · Analyzed
7.8EPSS 0.010
CVE-2023-50010
FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id function in /fftools/ffmpeg_enc.c component.
Published 2024-04-19 · Modified
7.8EPSS 0.005
CVE-2023-50008
FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in libavutil/mem.c:105:9 component.
Published 2024-04-19 · Modified
7.8EPSS 0.004
CVE-2024-31582
FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function of libavfilter/vf_codecview.c. This vulnerability allows attackers to cause undefined behavior or a Denial of Service (DoS) via crafted input.
Published 2024-04-17 · Modified
7.8EPSS 0.003
← Prev3 / 7Next →