VendorsFedora Projectfedora35
Vulnerabilities

Fedora Project Fedora 35

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1095CVEs
CVE-2021-45444
In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion.
Published 2022-02-13 · Modified
7.8EPSS 0.020
CVE-2021-45342
A buffer overflow vulnerability in CDataList of the jwwlib component of LibreCAD 2.2.0-rc3 and older allows an attacker to achieve Remote Code Execution using a crafted JWW document.
Published 2022-01-25 · Modified
7.8EPSS 0.019
CVE-2021-4019
Heap-based Buffer Overflow in vim/vim
Published 2021-12-01 · Analyzed
7.8EPSS 0.019
CVE-2022-23222
kernel/bpf/verifier.c in the Linux kernel through 5.15.14 allows local users to gain privileges because of the availability of pointer arithmetic via certain *_OR_NULL pointer types.
Published 2022-01-14 · Modified
7.8EPSS 0.019
CVE-2022-1629
Buffer Over-read in function find_next_quote in vim/vim
Published 2022-05-10 · Modified
7.8EPSS 0.019
CVE-2021-4136
Heap-based Buffer Overflow in vim/vim
Published 2021-12-19 · Modified
7.8EPSS 0.018
CVE-2022-23946
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon GCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-04 · Modified
7.8EPSS 0.017
CVE-2021-3778
Heap-based Buffer Overflow in vim/vim
Published 2021-09-15 · Modified
7.8EPSS 0.017
CVE-2021-3927
Heap-based Buffer Overflow in vim/vim
Published 2021-11-05 · Modified
7.8EPSS 0.017
CVE-2022-1927
Buffer Over-read in vim/vim
Published 2022-05-29 · Modified
7.8EPSS 0.017
CVE-2022-23803
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2022-2125
Heap-based Buffer Overflow in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2022-23804
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-16 · Modified
7.8EPSS 0.016
CVE-2021-4187
Use After Free in vim/vim
Published 2021-12-29 · Modified
7.8EPSS 0.016
CVE-2022-1851
Out-of-bounds Read in vim/vim
Published 2022-05-25 · Modified
7.8EPSS 0.016
CVE-2021-4173
Use After Free in vim/vim
Published 2021-12-27 · Modified
7.8EPSS 0.016
CVE-2022-1942
Heap-based Buffer Overflow in vim/vim
Published 2022-05-31 · Modified
7.8EPSS 0.016
CVE-2022-2000
Out-of-bounds Write in vim/vim
Published 2022-06-07 · Modified
7.8EPSS 0.016
CVE-2022-2126
Out-of-bounds Read in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2022-2124
Buffer Over-read in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.016
CVE-2021-3875
Heap-based Buffer Overflow in vim/vim
Published 2021-10-15 · Modified
7.8EPSS 0.015
CVE-2022-2182
Heap-based Buffer Overflow in vim/vim
Published 2022-06-23 · Modified
7.8EPSS 0.015
CVE-2022-1897
Out-of-bounds Write in vim/vim
Published 2022-05-27 · Modified
7.8EPSS 0.015
CVE-2022-2183
Out-of-bounds Read in vim/vim
Published 2022-06-23 · Modified
7.8EPSS 0.015
CVE-2021-3872
Heap-based Buffer Overflow in vim/vim
Published 2021-10-19 · Modified
7.8EPSS 0.015
CVE-2022-2304
Stack-based Buffer Overflow in vim/vim
Published 2022-07-05 · Modified
7.8EPSS 0.015
CVE-2022-20001
Injection in fish
Published 2022-03-14 · Modified
7.8EPSS 0.015
CVE-2022-1898
Use After Free in vim/vim
Published 2022-05-27 · Modified
7.8EPSS 0.015
CVE-2022-1154
Use after free in utf_ptr2char in vim/vim
Published 2022-03-30 · Modified
7.8EPSS 0.015
CVE-2022-23947
A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon DCodeNumber parsing functionality of KiCad EDA 6.0.1 and master commit de006fc010. A specially-crafted gerber or excellon file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
Published 2022-02-04 · Modified
7.8EPSS 0.015
CVE-2022-2284
Heap-based Buffer Overflow in vim/vim
Published 2022-07-02 · Modified
7.8EPSS 0.014
CVE-2021-45463
load_cache in GEGL before 0.4.34 allows shell expansion when a pathname in a constructed command line is not escaped or filtered. This is caused by use of the system library function for execution of the ImageMagick convert fallback in magick-load. NOTE: GEGL releases before 0.4.34 are used in GIMP releases before 2.10.30; however, this does not imply that GIMP builds enable the vulnerable feature.
Published 2021-12-23 · Modified
7.8EPSS 0.014
CVE-2021-28021
Buffer overflow vulnerability in function stbi__extend_receive in stb_image.h in stb 2.26 via a crafted JPEG file.
Published 2021-10-15 · Modified
7.8EPSS 0.014
CVE-2022-2288
Out-of-bounds Write in vim/vim
Published 2022-07-03 · Modified
7.8EPSS 0.014
CVE-2021-21703
PHP-FPM memory access in root process leading to privilege escalation
Published 2021-10-25 · Modified
7.8EPSS 0.014
CVE-2022-2129
Out-of-bounds Write in vim/vim
Published 2022-06-19 · Modified
7.8EPSS 0.014
CVE-2022-2285
Integer Overflow or Wraparound in vim/vim
Published 2022-07-02 · Modified
7.8EPSS 0.014
CVE-2022-2257
Out-of-bounds Read in vim/vim
Published 2022-06-30 · Modified
7.8EPSS 0.014
CVE-2022-2207
Heap-based Buffer Overflow in vim/vim
Published 2022-06-27 · Modified
7.8EPSS 0.014
CVE-2022-2210
Out-of-bounds Write in vim/vim
Published 2022-06-27 · Modified
7.8EPSS 0.014
← Prev9 / 28Next →