VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2022-31676
VMware Tools (12.0.0, 11.x.y and 10.x.y) contains a local privilege escalation vulnerability. A malicious actor with local non-administrative access to the Guest OS can escalate privileges as a root user in the virtual machine.
Published 2022-08-23 · Modified
7.8EPSS 0.005
CVE-2022-41322
In Kitty before 0.26.2, insufficient validation in the desktop notification escape sequence can lead to arbitrary code execution. The user must display attacker-controlled content in the terminal, then click on a notification popup.
Published 2022-09-23 · Modified
7.8EPSS 0.005
CVE-2023-4750
Use After Free in vim/vim
Published 2023-09-04 · Analyzed
7.8EPSS 0.005
CVE-2022-3324
Stack-based Buffer Overflow in vim/vim
Published 2022-09-27 · Analyzed
7.8EPSS 0.005
CVE-2022-2946
Use After Free in vim/vim
Published 2022-08-23 · Modified
7.8EPSS 0.005
CVE-2022-3234
Heap-based Buffer Overflow in vim/vim
Published 2022-09-17 · Modified
7.8EPSS 0.005
CVE-2022-2817
Use After Free in vim/vim
Published 2022-08-15 · Modified
7.8EPSS 0.005
CVE-2022-3037
Use After Free in vim/vim
Published 2022-08-30 · Analyzed
7.8EPSS 0.005
CVE-2022-2845
Improper Validation of Specified Quantity in Input in vim/vim
Published 2022-08-17 · Modified
7.8EPSS 0.005
CVE-2022-3016
Use After Free in vim/vim
Published 2022-08-28 · Modified
7.8EPSS 0.005
CVE-2022-2889
Use After Free in vim/vim
Published 2022-08-19 · Modified
7.8EPSS 0.005
CVE-2015-5704
scripts/licensecheck.pl in devscripts before 2.15.7 allows local users to execute arbitrary shell commands.
Published 2017-09-25 · Modified
7.8EPSS 0.005
CVE-2022-3297
Use After Free in vim/vim
Published 2022-09-25 · Analyzed
7.8EPSS 0.005
CVE-2021-41103
Insufficiently restricted permissions on plugin directories
Published 2021-10-04 · Modified
7.8EPSS 0.005
CVE-2022-39831
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact. This issue is different from CVE-2018-20230.
Published 2022-09-05 · Modified
7.8EPSS 0.005
CVE-2023-0433
Heap-based Buffer Overflow in vim/vim
Published 2023-01-21 · Analyzed
7.8EPSS 0.005
CVE-2022-39832
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
Published 2022-09-05 · Modified
7.8EPSS 0.005
CVE-2020-25671
A vulnerability was found in Linux Kernel, where a refcount leak in llcp_sock_connect() causing use-after-free which might lead to privilege escalations.
Published 2021-05-26 · Modified
7.8EPSS 0.005
CVE-2023-5535
Use After Free in vim/vim
Published 2023-10-11 · Analyzed
7.8EPSS 0.005
CVE-2022-3352
Use After Free in vim/vim
Published 2022-09-29 · Modified
7.8EPSS 0.005
CVE-2022-3235
Use After Free in vim/vim
Published 2022-09-18 · Modified
7.8EPSS 0.005
CVE-2021-46790
ntfsck in NTFS-3G through 2021.8.22 has a heap-based buffer overflow involving buffer+512*3-2. NOTE: the upstream position is that ntfsck is deprecated; however, it is shipped by some Linux distributions.
Published 2022-05-02 · Modified
7.8EPSS 0.005
CVE-2020-10936
Sympa before 6.2.56 allows privilege escalation.
Published 2020-05-27 · Modified
7.8EPSS 0.005
CVE-2019-20044
In Zsh before 5.8, attackers able to execute commands can regain privileges dropped by the --no-PRIVILEGED option. Zsh fails to overwrite the saved uid, so the original privileges can be restored by executing MODULE_PATH=/dir/with/module zmodload with a module that calls setuid().
Published 2020-02-24 · Modified
7.8EPSS 0.005
CVE-2021-45082
An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_invalid_imports can allow Cheetah code to import Python modules via the "#from MODULE import" substring. (Only lines beginning with #import are blocked.)
Published 2022-02-18 · Modified
7.8EPSS 0.005
CVE-2009-0115
The Device Mapper multipathing driver (aka multipath-tools or device-mapper-multipath) 0.4.8, as used in SUSE openSUSE, SUSE Linux Enterprise Server (SLES), Fedora, and possibly other operating systems, uses world-writable permissions for the socket file (aka /var/run/multipathd.sock), which allows local users to send arbitrary commands to the multipath daemon.
Published 2009-03-30 · Modified
7.8EPSS 0.005
CVE-2021-45417
AIDE before 0.17.4 allows local users to obtain root privileges via crafted file metadata (such as XFS extended attributes or tmpfs ACLs), because of a heap-based buffer overflow.
Published 2022-01-20 · Modified
7.8EPSS 0.005
CVE-2022-3099
Use After Free in vim/vim
Published 2022-09-03 · Modified
7.8EPSS 0.005
CVE-2022-3256
Use After Free in vim/vim
Published 2022-09-22 · Analyzed
7.8EPSS 0.005
CVE-2022-23613
Privilege escalation on xrdp
Published 2022-02-07 · Modified
7.8EPSS 0.005
CVE-2021-33289
In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflow can occur and allow for code execution.
Published 2021-09-07 · Modified
7.8EPSS 0.005
CVE-2021-35266
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer overflow can occur resulting in memory disclosure, denial of service and even code execution.
Published 2021-09-07 · Modified
7.8EPSS 0.005
CVE-2021-35267
NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror allowing for code execution or escalation of privileges when setuid-root.
Published 2021-09-07 · Modified
7.8EPSS 0.005
CVE-2020-24331
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the tss user still has read and write access to the /etc/tcsd.conf file (which contains various settings related to this daemon).
Published 2020-08-13 · Modified
7.8EPSS 0.005
CVE-2020-24330
An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges instead of by the tss user, it fails to drop the root gid privilege when no longer needed.
Published 2020-08-13 · Modified
7.8EPSS 0.005
CVE-2023-0288
Heap-based Buffer Overflow in vim/vim
Published 2023-01-13 · Analyzed
7.8EPSS 0.005
CVE-2023-50010
FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id function in /fftools/ffmpeg_enc.c component.
Published 2024-04-19 · Modified
7.8EPSS 0.005
CVE-2022-2849
Heap-based Buffer Overflow in vim/vim
Published 2022-08-17 · Modified
7.8EPSS 0.005
CVE-2021-35269
NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_setup_flag, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
Published 2021-09-07 · Modified
7.8EPSS 0.005
CVE-2021-35268
In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a heap buffer overflow can occur allowing for code execution and escalation of privileges.
Published 2021-09-07 · Modified
7.8EPSS 0.005
← Prev47 / 135Next →