VendorsFedora Projectfedora21
Vulnerabilities

Fedora Project Fedora 21

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

164CVEs
CVE-2015-2045
The HYPERVISOR_xen_version hypercall in Xen 3.2.x through 4.5.x does not properly initialize data structures, which allows local guest users to obtain sensitive information via unspecified vectors.
Published 2015-03-12 · Modified
2.1EPSS 0.005
CVE-2015-1563
The ARM GIC distributor virtualization in Xen 4.4.x and 4.5.x allows local guests to cause a denial of service by causing a large number messages to be logged.
Published 2015-02-09 · Modified
2.1EPSS 0.004
CVE-2013-6494
fedup 0.9.0 in Fedora 19, 20, and 21 uses a temporary directory with a static name for its download cache, which allows local users to cause a denial of service (prevention of system updates).
Published 2014-12-02 · Modified
2.1EPSS 0.004
CVE-2015-2152
Xen 4.5.x and earlier enables certain default backends when emulating a VGA device for an x86 HVM guest qemu even when the configuration disables them, which allows local guest users to obtain access to the VGA console by (1) setting the DISPLAY environment variable, when compiled with SDL support, or connecting to the VNC server on (2) ::1 or (3) 127.0.0.1, when not compiled with SDL support.
Published 2015-03-18 · Modified
1.9EPSS 0.004
← Prev5 / 5