VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2019-5755
Incorrect handling of negative zero in V8 in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page.
Published 2019-02-19 · Modified
8.1EPSS 0.019
CVE-2021-23214
When the server is configured to use trust authentication with a clientcert requirement or to use cert authentication, a man-in-the-middle attacker can inject arbitrary SQL queries when a connection is first established, despite the use of SSL certificate verification and encryption.
Published 2022-03-04 · Modified
8.1EPSS 0.019
CVE-2020-8153
Improper access control in Groupfolders app 4.0.3 allowed to delete hidden directories when when renaming an accessible item to the same name.
Published 2020-05-12 · Modified
8.1EPSS 0.019
CVE-2018-20547
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp data.
Published 2018-12-28 · Modified
8.1EPSS 0.018
CVE-2023-39323
Arbitrary code execution during build via line directives in cmd/go
Published 2023-10-05 · Modified
8.1EPSS 0.018
CVE-2021-20305
A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, EDDSA & ECDSA) result in the Elliptic Curve Cryptography point (ECC) multiply function being called with out-of-range scalers, possibly resulting in incorrect results. This flaw allows an attacker to force an invalid signature, causing an assertion failure or possible validation. The highest threat to this vulnerability is to confidentiality, integrity, as well as system availability.
Published 2021-04-05 · Modified
8.1EPSS 0.017
CVE-2021-21172
Insufficient policy enforcement in File System API in Google Chrome on Windows prior to 89.0.4389.72 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page.
Published 2021-03-09 · Modified
8.1EPSS 0.017
CVE-2024-23263
A logic issue was addressed with improved validation. This issue is fixed in Safari 17.4, iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, visionOS 1.1, watchOS 10.4. Processing maliciously crafted web content may prevent Content Security Policy from being enforced.
Published 2024-03-08 · Modified
8.1EPSS 0.015
CVE-2020-25693
A flaw was found in CImg in versions prior to 2.9.3. Integer overflows leading to heap buffer overflows in load_pnm() can be triggered by a specially crafted input file processed by CImg, which can lead to an impact to application availability or data integrity.
Published 2020-12-03 · Modified
8.1EPSS 0.015
CVE-2021-21205
Insufficient policy enforcement in navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Published 2021-04-26 · Modified
8.1EPSS 0.015
CVE-2013-4751
php-symfony2-Validator has loss of information during serialization
Published 2019-11-01 · Modified
8.1EPSS 0.014
CVE-2021-33644
An attacker who submits a crafted tar file with size in header struct being 0 may be able to trigger an calling of malloc(0) for a variable gnu_longname, causing an out-of-bounds read.
Published 2022-08-09 · Modified
8.1EPSS 0.014
CVE-2024-32004
Git vulnerable to Remote Code Execution while cloning special-crafted local repositories
Published 2024-05-14 · Analyzed
8.1EPSS 0.014
CVE-2019-18887
An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. The UriSigner was subject to timing attacks. This is related to symfony/http-kernel.
Published 2019-11-21 · Modified
8.1EPSS 0.013
CVE-2022-0114
Out of bounds memory access in Blink Serial API in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page and virtual serial port driver.
Published 2022-02-11 · Modified
8.1EPSS 0.013
CVE-2023-2794
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_deliver() function
Published 2024-04-10 · Modified
8.1EPSS 0.013
CVE-2023-4761
Out of bounds memory access in FedCM in Google Chrome prior to 116.0.5845.179 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)
Published 2023-09-05 · Modified
8.1EPSS 0.012
CVE-2023-41915
OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of library code with UID 0.
Published 2023-09-09 · Modified
8.1EPSS 0.012
CVE-2021-20179
A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.
Published 2021-03-15 · Modified
8.1EPSS 0.012
CVE-2023-43804
`Cookie` HTTP header isn't stripped on cross-origin redirects
Published 2023-10-04 · Modified
8.1EPSS 0.012
CVE-2019-7639
An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins succeed with a valid username and an incorrect password, even though a failure entry is recorded in the /var/log/messages file.
Published 2019-02-08 · Modified
8.1EPSS 0.012
CVE-2021-30536
Out of bounds read in V8 in Google Chrome prior to 91.0.4472.77 allowed a remote attacker to potentially exploit stack corruption via a crafted HTML page.
Published 2021-06-07 · Modified
8.1EPSS 0.012
CVE-2023-4234
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_submit_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.011
CVE-2021-3935
When PgBouncer is configured to use "cert" authentication, a man-in-the-middle attacker can inject arbitrary SQL queries when a connection is first established, despite the use of TLS certificate verification and encryption. This flaw affects PgBouncer versions prior to 1.16.1.
Published 2021-11-22 · Modified
8.1EPSS 0.011
CVE-2023-1194
Use-after-free in parse_lease_state()
Published 2023-11-03 · Analyzed
8.1EPSS 0.011
CVE-2023-4233
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the sms_decode_address_field() function
Published 2024-04-17 · Modified
8.1EPSS 0.010
CVE-2023-4232
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_status_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.010
CVE-2023-4235
Ofono: sms decoder stack-based buffer overflow remote code execution vulnerability within the decode_deliver_report() function
Published 2024-04-17 · Modified
8.1EPSS 0.009
CVE-2023-4431
Out of bounds memory access in Fonts in Google Chrome prior to 116.0.5845.110 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)
Published 2023-08-22 · Modified
8.1EPSS 0.009
CVE-2021-30511
Out of bounds read in Tab Groups in Google Chrome prior to 90.0.4430.212 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page.
Published 2021-06-04 · Modified
8.1EPSS 0.009
CVE-2024-23839
Suricata http: heap use after free with http.request_header and http.response_header keywords
Published 2024-02-26 · Analyzed
8.1EPSS 0.008
CVE-2024-27834
The issue was addressed with improved checks. This issue is fixed in Safari 17.5, iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and iPadOS 17.5, macOS Sonoma 14.5, tvOS 17.5, watchOS 10.5. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication.
Published 2024-05-13 · Modified
8.1EPSS 0.006
CVE-2021-21367
Incorrect Authorization in switchboard-plug-bluetooth
Published 2021-03-12 · Modified
8.1EPSS 0.005
CVE-2022-21661
SQL injection in WordPress
Published 2022-01-06 · Analyzed
8.01 PoCEPSS 0.978
CVE-2021-21300
malicious repositories can execute remote code while cloning
Published 2021-03-09 · Modified
8.0EPSS 0.885
CVE-2024-31458
Cacti SQL Injection vulnerability in lib/html_form_templates.php by reading dirty data stored in database
Published 2024-05-13 · Modified
8.0EPSS 0.126
CVE-2015-20107
In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7, 3.8, 3.9
Published 2022-04-13 · Modified
8.0EPSS 0.071
CVE-2024-31459
Cacti RCE vulnerability by file include in lib/plugin.php
Published 2024-05-13 · Modified
8.0EPSS 0.027
CVE-2020-10804
In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability was found in retrieval of the current username (in libraries/classes/Server/Privileges.php and libraries/classes/UserPassword.php). A malicious user with access to the server could create a crafted username, and then trick the victim into performing specific actions with that user account (such as editing its privileges).
Published 2020-03-22 · Modified
8.0EPSS 0.024
CVE-2022-31197
SQL Injection in ResultSet.refreshRow() with malicious column names in pgjdbc
Published 2022-08-03 · Modified
8.0EPSS 0.022
← Prev38 / 135Next →