VendorsFedora Projectfedoraall versions
Vulnerabilities

Fedora Project Fedora

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5368CVEs
CVE-2023-43665
In Django 3.2 before 3.2.22, 4.1 before 4.1.12, and 4.2 before 4.2.6, the django.utils.text.Truncator chars() and words() methods (when used with html=True) are subject to a potential DoS (denial of service) attack via certain inputs with very long, potentially malformed HTML text. The chars() and words() methods are used to implement the truncatechars_html and truncatewords_html template filters, which are thus also vulnerable. NOTE: this issue exists because of an incomplete fix for CVE-2019-14232.
Published 2023-11-03 · Modified
7.5EPSS 0.012
CVE-2023-41752
Apache Traffic Server: s3_auth plugin problem with hash calculation
Published 2023-10-17 · Modified
7.5EPSS 0.012
CVE-2021-27803
A vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-Fi Direct) provision discovery requests. It could result in denial of service or other impact (potentially execution of arbitrary code), for an attacker within radio range.
Published 2021-02-26 · Modified
7.5EPSS 0.012
CVE-2022-39958
Response body bypass in OWASP ModSecurity Core Rule Set via repeated HTTP Range header submission with a small byte range
Published 2022-09-20 · Modified
7.5EPSS 0.012
CVE-2023-29197
Improper header name validation in guzzlehttp/psr7
Published 2023-04-17 · Modified
7.5EPSS 0.012
CVE-2024-32661
FreeRDP rdp_write_logon_info_v1 NULL access
Published 2024-04-23 · Modified
7.5EPSS 0.012
CVE-2024-23837
LibHTP unbounded folded header handling leads to denial service
Published 2024-02-26 · Modified
7.5EPSS 0.012
CVE-2023-5344
Heap-based Buffer Overflow in vim/vim
Published 2023-10-02 · Modified
7.5EPSS 0.012
CVE-2021-45450
In Mbed TLS before 2.28.0 and 3.x before 3.1.0, psa_cipher_generate_iv and psa_cipher_encrypt allow policy bypass or oracle-based decryption when the output buffer is at memory locations accessible to an untrusted application.
Published 2021-12-21 · Modified
7.5EPSS 0.012
CVE-2024-4559
Heap buffer overflow in WebAudio in Google Chrome prior to 124.0.6367.155 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-05-07 · Analyzed
7.5EPSS 0.012
CVE-2021-41500
Incomplete string comparison vulnerability exits in cvxopt.org cvxop <= 1.2.6 in APIs (cvxopt.cholmod.diag, cvxopt.cholmod.getfactor, cvxopt.cholmod.solve, cvxopt.cholmod.spsolve), which allows attackers to conduct Denial of Service attacks by construct fake Capsule objects.
Published 2021-12-17 · Modified
7.5EPSS 0.012
CVE-2024-27318
Versions of the package onnx before and including 1.15.0 are vulnerable to Directory Traversal as the external_data field of the tensor proto can have a path to the file which is outside the model current directory or user-provided directory. The vulnerability occurs as a bypass for the patch added for CVE-2022-25882.
Published 2024-02-23 · Modified
7.5EPSS 0.012
CVE-2024-31578
FFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the av_hwframe_ctx_init function.
Published 2024-04-17 · Modified
7.5EPSS 0.012
CVE-2023-46838
Linux: netback processing of zero-length transmit fragment
Published 2024-01-29 · Modified
7.5EPSS 0.012
CVE-2024-26134
CBOR2 decoder has potential buffer overflow
Published 2024-02-19 · Analyzed
7.5EPSS 0.012
CVE-2023-20197
A vulnerability in the filesystem image parser for Hierarchical File System Plus (HFS+) of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an incorrect check for completion when a file is decompressed, which may result in a loop condition that could cause the affected software to stop responding. An attacker could exploit this vulnerability by submitting a crafted HFS+ filesystem image to be scanned by ClamAV on an affected device. A successful exploit could allow the attacker to cause the ClamAV scanning process to stop responding, resulting in a DoS condition on the affected software and consuming available system resources. For a description of this vulnerability, see the ClamAV blog .
Published 2023-08-16 · Modified
7.5EPSS 0.012
CVE-2024-32660
FreeRDP zgfx_decompress out of memory vulnerability
Published 2024-04-23 · Modified
7.5EPSS 0.012
CVE-2024-23836
crafted traffic can cause denial of service
Published 2024-02-26 · Analyzed
7.5EPSS 0.012
CVE-2024-27507
libLAS 1.8.1 contains a memory leak vulnerability in /libLAS/apps/ts2las.cpp.
Published 2024-02-27 · Modified
7.5EPSS 0.012
CVE-2020-35733
An issue was discovered in Erlang/OTP before 23.2.2. The ssl application 10.2 accepts and trusts an invalid X.509 certificate chain to a trusted root Certification Authority.
Published 2021-01-15 · Modified
7.5EPSS 0.012
CVE-2019-16237
Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_message_archive_management.vala.
Published 2019-09-11 · Modified
7.5EPSS 0.012
CVE-2023-46849
Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could cause an application crash, leading to a denial of service.
Published 2023-11-11 · Modified
7.5EPSS 0.012
CVE-2023-31137
MaraDNS Integer Underflow Vulnerability in DNS Packet Decompression
Published 2023-05-09 · Modified
7.5EPSS 0.011
CVE-2022-3171
Memory handling vulnerability in ProtocolBuffers Java core and lite
Published 2022-10-12 · Modified
7.5EPSS 0.011
CVE-2021-43612
In lldpd before 1.0.13, when decoding SONMP packets in the sonmp_decode function, it's possible to trigger an out-of-bounds heap read via short SONMP packets.
Published 2023-04-15 · Modified
7.5EPSS 0.011
CVE-2024-4140
An excessive memory use issue (CWE-770) exists in Email-MIME, before version 1.954, which can cause denial of service when parsing multipart MIME messages. The patch set (from 2020 and 2024) limits excessive depth and the total number of parts.
Published 2024-05-02 · Analyzed
7.5EPSS 0.011
CVE-2023-44271
An issue was discovered in Pillow before 10.0.0. It is a Denial of Service that uncontrollably allocates memory to process a given task, potentially causing a service to crash by having it run out of memory. This occurs for truetype in ImageFont when textlength in an ImageDraw instance operates on a long text argument.
Published 2023-11-03 · Modified
7.5EPSS 0.011
CVE-2023-41909
An issue was discovered in FRRouting FRR through 9.0. bgp_nlri_parse_flowspec in bgpd/bgp_flowspec.c processes malformed requests with no attributes, leading to a NULL pointer dereference.
Published 2023-09-05 · Modified
7.5EPSS 0.011
CVE-2021-3445
A flaw was found in libdnf's signature verification functionality in versions before 0.60.1. This flaw allows an attacker to achieve code execution if they can alter the header information of an RPM package and then trick a user or system into installing it. The highest risk of this vulnerability is to confidentiality, integrity, as well as system availability.
Published 2021-05-19 · Modified
7.5EPSS 0.011
CVE-2023-38552
When the Node.js policy feature checks the integrity of a resource against a trusted manifest, the application can intercept the operation and return a forged checksum to the node's policy implementation, thus effectively disabling the integrity check. Impacts: This vulnerability affects all users using the experimental policy mechanism in all active release lines: 18.x and, 20.x. Please note that at the time this CVE was issued, the policy mechanism is an experimental feature of Node.js.
Published 2023-10-18 · Modified
7.5EPSS 0.011
CVE-2019-5094
An exploitable code execution vulnerability exists in the quota file functionality of E2fsprogs 1.45.3. A specially crafted ext4 partition can cause an out-of-bounds write on the heap, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Published 2019-09-24 · Modified
7.5EPSS 0.011
CVE-2022-39283
FreeRDP may read and display out of bounds data
Published 2022-10-12 · Modified
7.5EPSS 0.011
CVE-2009-1603
src/tools/pkcs11-tool.c in pkcs11-tool in OpenSC 0.11.7, when used with unspecified third-party PKCS#11 modules, generates RSA keys with incorrect public exponents, which allows attackers to read the cleartext form of messages that were intended to be encrypted.
Published 2009-05-11 · Modified
7.5EPSS 0.011
CVE-2024-2002
Libdwarf: crashes randomly on fuzzed object
Published 2024-03-18 · Analyzed
7.5EPSS 0.011
CVE-2019-14855
A flaw was found in the way certificate signatures could be forged using collisions found in the SHA-1 algorithm. An attacker could use this weakness to create forged certificate signatures. This issue affects GnuPG versions before 2.2.18.
Published 2020-03-20 · Modified
7.5EPSS 0.011
CVE-2022-32793
Multiple out-of-bounds write issues were addressed with improved bounds checking. This issue is fixed in macOS Monterey 12.5, watchOS 8.7, tvOS 15.6, iOS 15.6 and iPadOS 15.6. An app may be able to disclose kernel memory.
Published 2022-08-24 · Modified
7.5EPSS 0.011
CVE-2023-3966
Openvswsitch: ovs-vswitch fails to recover after malformed geneve metadata packet
Published 2024-02-22 · Analyzed
7.5EPSS 0.010
CVE-2019-5188
A code execution vulnerability exists in the directory rehashing functionality of E2fsprogs e2fsck 1.45.4. A specially crafted ext4 directory can cause an out-of-bounds write on the stack, resulting in code execution. An attacker can corrupt a partition to trigger this vulnerability.
Published 2020-01-08 · Modified
7.5EPSS 0.010
CVE-2016-6342
elog 3.1.1 allows remote attackers to post data as any username in the logbook.
Published 2017-06-27 · Modified
7.5EPSS 0.010
CVE-2022-45060
An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1. An attacker may introduce characters through HTTP/2 pseudo-headers that are invalid in the context of an HTTP/1 request line, causing the Varnish server to produce invalid HTTP/1 requests to the backend. This could, in turn, be used to exploit vulnerabilities in a server behind the Varnish server. Note: the 6.0.x LTS series (before 6.0.11) is affected.
Published 2022-11-09 · Modified
7.5EPSS 0.010
← Prev69 / 135Next →