VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2021-41073
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/<pid>/maps for exploitation.
Published 2021-09-19 · Modified
7.8EPSS 0.018
CVE-2021-30184
GNU Chess 6.2.7 allows attackers to execute arbitrary code via crafted PGN (Portable Game Notation) data. This is related to a buffer overflow in the use of a .tmp.epd temporary file in the cmd_pgnload and cmd_pgnreplay functions in frontend/cmd.cc.
Published 2021-04-07 · Modified
7.8EPSS 0.018
CVE-2019-3839
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER. Ghostscript versions before 9.27 are vulnerable.
Published 2019-05-16 · Modified
7.8EPSS 0.018
CVE-2019-9854
Unsafe URL assembly flaw in allowed script location check
Published 2019-09-06 · Modified
7.8EPSS 0.018
CVE-2019-9852
Insufficient URL encoding flaw in allowed script location check
Published 2019-08-15 · Modified
7.8EPSS 0.018
CVE-2021-3403
In ytnef 1.9.3, the TNEFSubjectHandler function in lib/ytnef.c allows remote attackers to cause a denial-of-service (and potentially code execution) due to a double free which can be triggered via a crafted file.
Published 2021-03-04 · Modified
7.8EPSS 0.018
CVE-2022-23946
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-04 · Modified
7.8EPSS 0.017
CVE-2020-6070
An exploitable code execution vulnerability exists in the file system checking functionality of fsck.f2fs 1.12.0. A specially crafted f2fs file can cause a logic flaw and out-of-bounds heap operations, resulting in code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2020-08-10 · Modified
7.8EPSS 0.017
CVE-2021-3778
Heap-based Buffer Overflow in vim/vim
Published 2021-09-15 · Modified
7.8EPSS 0.017
CVE-2021-4192
Use After Free in vim/vim
Published 2021-12-31 · Modified
7.8EPSS 0.017
CVE-2021-3927
Heap-based Buffer Overflow in vim/vim
Published 2021-11-05 · Modified
7.8EPSS 0.017
CVE-2022-1927
Buffer Over-read in vim/vim
Published 2022-05-29 · Modified
7.8EPSS 0.017
CVE-2019-1010057
nfdump 1.6.16 and earlier is affected by: Buffer Overflow. The impact is: The impact could range from a denial of service to local code execution. The component is: nfx.c:546, nffile_inline.c:83, minilzo.c (redistributed). The attack vector is: nfdump must read and process a specially crafted file. The fixed version is: after commit 9f0fe9563366f62a71d34c92229da3432ec5cf0e.
Published 2019-07-16 · Modified
7.8EPSS 0.017
CVE-2022-23803
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2022-2125
Heap-based Buffer Overflow in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2022-23804
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2021-4187
Use After Free in vim/vim
Published 2021-12-29 · Modified
7.8EPSS 0.016
CVE-2022-1851
Out-of-bounds Read in vim/vim
Published 2022-05-25 · Modified
7.8EPSS 0.016
CVE-2021-4173
Use After Free in vim/vim
Published 2021-12-27 · Modified
7.8EPSS 0.016
CVE-2022-1942
Heap-based Buffer Overflow in vim/vim
Published 2022-05-31 · Modified
7.8EPSS 0.016
CVE-2022-2000
Out-of-bounds Write in vim/vim
Published 2022-06-07 · Modified
7.8EPSS 0.016
CVE-2019-12802
In radare2 through 3.5.1, the rcc_context function of libr/egg/egg_lang.c mishandles changing context. This allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact (invalid memory access in r_egg_lang_parsechar; invalid free in rcc_pusharg).
Published 2019-06-13 · Modified
7.8EPSS 0.016
CVE-2019-19918
Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c.
Published 2019-12-20 · Modified
7.8EPSS 0.016
CVE-2019-19647
radare2 through 4.0.0 lacks validation of the content variable in the function r_asm_pseudo_incbin at libr/asm/asm.c, ultimately leading to an arbitrary write. This allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted input.
Published 2019-12-09 · Modified
7.8EPSS 0.016
CVE-2020-6510
Heap buffer overflow in background fetch in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Published 2020-07-22 · Modified
7.8EPSS 0.016
CVE-2021-3984
Heap-based Buffer Overflow in vim/vim
Published 2021-12-01 · Modified
7.8EPSS 0.016
CVE-2022-2126
Out-of-bounds Read in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2022-2124
Buffer Over-read in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2021-3875
Heap-based Buffer Overflow in vim/vim
Published 2021-10-15 · Modified
7.8EPSS 0.015
CVE-2022-2182
Heap-based Buffer Overflow in vim/vim
Published 2022-06-23 · Modified
7.8EPSS 0.015
CVE-2019-19648
In the macho_parse_file functionality in macho/macho.c of YARA 3.11.0, command_size may be inconsistent with the real size. A specially crafted MachO file can cause an out-of-bounds memory access, resulting in Denial of Service (application crash) or potential code execution.
Published 2019-12-09 · Modified
7.8EPSS 0.015
CVE-2022-1897
Out-of-bounds Write in vim/vim
Published 2022-05-27 · Modified
7.8EPSS 0.015
CVE-2021-3575
A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k file. An attacker could use this to execute arbitrary code with the permissions of the application compiled against openjpeg.
Published 2022-03-04 · Modified
7.8EPSS 0.015
CVE-2019-19917
Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c.
Published 2019-12-20 · Modified
7.8EPSS 0.015
CVE-2022-2183
Out-of-bounds Read in vim/vim
Published 2022-06-23 · Modified
7.8EPSS 0.015
CVE-2023-35001
Linux Kernel nftables Out-Of-Bounds Read/Write Vulnerability
Published 2023-07-05 · Modified
7.8EPSS 0.015
CVE-2021-29464
Heap buffer overflow in Exiv2::Jp2Image::encodeJp2Header
Published 2021-04-30 · Modified
7.8EPSS 0.015
CVE-2021-3872
Heap-based Buffer Overflow in vim/vim
Published 2021-10-19 · Modified
7.8EPSS 0.015
CVE-2022-2304
Stack-based Buffer Overflow in vim/vim
Published 2022-07-05 · Modified
7.8EPSS 0.015
CVE-2022-20001
Injection in fish
Published 2022-03-14 · Modified
7.8EPSS 0.015
← Prev42 / 135Next →