VendorsFedora Projectfedora40
Vulnerabilities

Fedora Project Fedora 40

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

244CVEs
CVE-2024-27000
serial: mxs-auart: add spinlock around changing cts state
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2023-51798
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating point exception (FPE) error at libavfilter/vf_minterpolate.c:1078:60 in interpolate.
Published 2024-04-19 · Analyzed
7.8EPSS 0.003
CVE-2024-26922
drm/amdgpu: validate the parameters of bo mapping operations more clearly
Published 2024-04-23 · Modified
7.8EPSS 0.003
CVE-2024-27008
drm: nv04: Fix out of bounds access
Published 2024-05-01 · Analyzed
7.8EPSS 0.003
CVE-2024-27401
firewire: nosy: ensure user_length is taken into account when fetching packet contents
Published 2024-05-13 · Modified
7.8EPSS 0.003
CVE-2024-26994
speakup: Avoid crash on very long word
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-27017
netfilter: nft_set_pipapo: walk over current view on netlink dump
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-26988
init/main.c: Fix potential static_command_line memory overflow
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2023-51791
Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec/jpegxl_parser.c in gen_alias_map.
Published 2024-04-19 · Analyzed
7.8EPSS 0.003
CVE-2024-27012
netfilter: nf_tables: restore set elements when delete set fails
Published 2024-05-01 · Modified
7.8EPSS 0.003
CVE-2024-27400
drm/amdgpu: once more fix the call oder in amdgpu_ttm_move() v2
Published 2024-05-13 · Modified
7.8EPSS 0.002
CVE-2024-35949
btrfs: make sure that WRITTEN is set on all metadata blocks
Published 2024-05-20 · Modified
7.8EPSS 0.002
CVE-2024-27019
netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()
Published 2024-05-01 · Modified
7.8EPSS 0.002
CVE-2024-27021
r8169: fix LED-related deadlock on module removal
Published 2024-05-01 · Modified
7.8EPSS 0.002
CVE-2024-3056
Podman: kernel: containers in shared ipc namespace are vulnerable to denial of service attack
Published 2024-08-02 · Modified
7.7EPSS 0.005
CVE-2024-3841
Insufficient data validation in Browser Switcher in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to inject scripts or HTML into a privileged page via a malicious file. (Chromium security severity: Medium)
Published 2024-04-17 · Analyzed
7.6EPSS 0.007
CVE-2024-31309
Apache Traffic Server: HTTP/2 CONTINUATION frames can be utilized for DoS attack
Published 2024-04-10 · Modified
7.5EPSS 0.946
CVE-2024-27316
Apache HTTP Server: HTTP/2 DoS by memory exhaustion on endless continuation frames
Published 2024-04-04 · Modified
7.5EPSS 0.913
CVE-2024-24549
Apache Tomcat: HTTP/2 header handling DoS
Published 2024-03-13 · Modified
7.5EPSS 0.231
CVE-2024-31142
x86: Incorrect logic for BTC/SRSO mitigations
Published 2024-05-16 · Analyzed
7.5EPSS 0.174
CVE-2024-34069
Werkzeug's improper usage of a pathname and improper CSRF protection results in the remote command execution
Published 2024-05-06 · Analyzed
7.5EPSS 0.034
CVE-2024-1931
Denial of service when trimming EDE text on positive replies
Published 2024-03-07 · Analyzed
7.5EPSS 0.025
CVE-2024-28757
libexpat through 2.6.1 allows an XML Entity Expansion attack when there is isolated use of external parsers (created via XML_ExternalEntityParserCreate).
Published 2024-03-10 · Modified
7.5EPSS 0.020
CVE-2024-2886
Use after free in WebCodecs in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
Published 2024-03-26 · Modified
7.5EPSS 0.018
CVE-2024-22871
An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.
Published 2024-02-29 · Modified
7.5EPSS 0.015
CVE-2023-50967
latchset jose through version 11 allows attackers to cause a denial of service (CPU consumption) via a large p2c (aka PBES2 Count) value.
Published 2024-03-20 · Modified
7.5EPSS 0.014
CVE-2024-22640
TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.
Published 2024-04-19 · Modified
7.5EPSS 0.013
CVE-2024-24479
A Buffer Overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the wsutil/to_str.c, and format_fractional_part_nsecs components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
Published 2024-02-21 · Modified
7.5EPSS 0.013
CVE-2024-24476
A buffer overflow in Wireshark before 4.2.0 allows a remote attacker to cause a denial of service via the pan/addr_resolv.c, and ws_manuf_lookup_str(), size components. NOTE: this is disputed by the vendor because neither release 4.2.0 nor any other release was affected.
Published 2024-02-21 · Modified
7.5EPSS 0.013
CVE-2024-23280
An injection issue was addressed with improved validation. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, tvOS 17.4, watchOS 10.4. A maliciously crafted webpage may be able to fingerprint the user.
Published 2024-03-08 · Modified
7.5EPSS 0.013
CVE-2024-32661
FreeRDP rdp_write_logon_info_v1 NULL access
Published 2024-04-23 · Modified
7.5EPSS 0.012
CVE-2024-27318
Versions of the package onnx before and including 1.15.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can have a path to the file which is outside the model current directory or user-provided directory. The vulnerability occurs as a bypass for the patch added for CVE-2022-25882.
Published 2024-02-23 · Modified
7.5EPSS 0.012
CVE-2024-4559
Heap buffer overflow in WebAudio in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-05-07 · Analyzed
7.5EPSS 0.012
CVE-2024-31578
FFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the av_hwframe_ctx_init function.
Published 2024-04-17 · Modified
7.5EPSS 0.012
CVE-2024-26134
CBOR2 decoder has potential buffer overflow
Published 2024-02-19 · Analyzed
7.5EPSS 0.012
CVE-2024-32660
FreeRDP zgfx_decompress out of memory vulnerability
Published 2024-04-23 · Modified
7.5EPSS 0.012
CVE-2024-27507
libLAS 1.8.1 contains a memory leak vulnerability in /libLAS/apps/ts2las.cpp.
Published 2024-02-27 · Modified
7.5EPSS 0.012
CVE-2024-4140
An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME messages. The patch set (from 2020 and 2024) limits excessive depth and the total number of parts.
Published 2024-05-02 · Analyzed
7.5EPSS 0.011
CVE-2024-2002
Libdwarf: crashes randomly on fuzzed object
Published 2024-03-18 · Analyzed
7.5EPSS 0.011
CVE-2023-3966
Openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet
Published 2024-02-22 · Analyzed
7.5EPSS 0.010
← Prev4 / 7Next →