VendorsFedora Projectfedora36
Vulnerabilities

Fedora Project Fedora 36

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

711CVEs
CVE-2022-24836
Inefficient Regular Expression Complexity in Nokogiri
Published 2022-04-11 · Modified
7.5EPSS 0.035
CVE-2022-21716
Buffer Overflow in Twisted
Published 2022-03-03 · Modified
7.5EPSS 0.035
CVE-2022-27406
FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size.
Published 2022-04-22 · Modified
7.5EPSS 0.033
CVE-2022-27664
In net/http in Go before 1.18.6 and 1.19.x before 1.19.1, attackers can cause a denial of service because an HTTP/2 connection can hang during closing if shutdown were preempted by a fatal error.
Published 2022-09-06 · Modified
7.5EPSS 0.033
CVE-2022-37451
Exim before 4.96 has an invalid free in pam_converse in auths/call_pam.c because store_free is not used after store_malloc.
Published 2022-08-06 · Modified
7.5EPSS 0.033
CVE-2022-39261
Twig may load a template outside a configured directory when using the filesystem loader
Published 2022-09-28 · Modified
7.5EPSS 0.032
CVE-2022-38177
Memory leak in ECDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.032
CVE-2021-38593
Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRasterPaintEngine::fill and QPaintEngineEx::stroke).
Published 2021-08-12 · Modified
7.5EPSS 0.030
CVE-2022-38178
Memory leaks in EdDSA DNSSEC verification code
Published 2022-09-21 · Modified
7.5EPSS 0.030
CVE-2022-33099
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
Published 2022-07-01 · Modified
7.5EPSS 0.028
CVE-2022-27405
FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request.
Published 2022-04-22 · Modified
7.5EPSS 0.028
CVE-2022-21680
Cubic catastrophic backtracking (ReDoS) in marked
Published 2022-01-14 · Modified
7.5EPSS 0.028
CVE-2023-21538
.NET Denial of Service Vulnerability
Published 2023-01-10 · Modified
7.5EPSS 0.028
CVE-2022-21681
Exponential catastrophic backtracking (ReDoS) in marked
Published 2022-01-14 · Modified
7.5EPSS 0.027
CVE-2022-24778
Incorrect Authorization in imgcrypt
Published 2022-03-25 · Modified
7.5EPSS 0.027
CVE-2022-45061
An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably long name being presented to the decoder could lead to a CPU denial of service. Hostnames are often supplied by remote servers that could be controlled by a malicious actor; in such a scenario, they could trigger excessive CPU consumption on the client attempting to make use of an attacker-supplied supposed hostname. For example, the attack payload could be placed in the Location header of an HTTP response with status code 302. A fix is planned in 3.11.1, 3.10.9, 3.9.16, 3.8.16, and 3.7.16.
Published 2022-11-09 · Modified
7.5EPSS 0.027
CVE-2022-31116
Incorrect handling of invalid surrogate pair characters in ujson
Published 2022-07-05 · Modified
7.5EPSS 0.026
CVE-2022-24729
Regular expression Denial of Service in dialog plugin
Published 2022-03-16 · Modified
7.5EPSS 0.025
CVE-2022-43680
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
Published 2022-10-24 · Modified
7.5EPSS 0.024
CVE-2022-2309
NULL Pointer Dereference in lxml/lxml
Published 2022-07-05 · Modified
7.5EPSS 0.024
CVE-2021-46669
MariaDB through 10.5.9 allows attackers to trigger a convert_const_to_int use-after-free when the BIGINT data type is used.
Published 2022-02-01 · Modified
7.5EPSS 0.024
CVE-2022-32091
MariaDB v10.7 was discovered to contain an use-after-poison in in __interceptor_memset at /libsanitizer/sanitizer_common/sanitizer_common_interceptors.inc.
Published 2022-07-01 · Modified
7.5EPSS 0.024
CVE-2022-31779
Improper HTTP/2 scheme and method validation
Published 2022-08-10 · Modified
7.5EPSS 0.024
CVE-2022-28129
Insufficient Validation of HTTP/1.x Headers
Published 2022-08-10 · Modified
7.5EPSS 0.023
CVE-2022-31780
HTTP/2 framing vulnerabilities
Published 2022-08-10 · Modified
7.5EPSS 0.023
CVE-2022-32084
MariaDB v10.2 to v10.7 was discovered to contain a segmentation fault via the component sub_select.
Published 2022-07-01 · Modified
7.5EPSS 0.023
CVE-2022-32081
MariaDB v10.4 to v10.7 was discovered to contain an use-after-poison in prepare_inplace_add_virtual at /storage/innobase/handler/handler0alter.cc.
Published 2022-07-01 · Modified
7.5EPSS 0.022
CVE-2022-32089
MariaDB v10.5 to v10.7 was discovered to contain a segmentation fault via the component st_select_lex_unit::exclude_level.
Published 2022-07-01 · Modified
7.5EPSS 0.022
CVE-2021-37150
Protocol vs scheme mismatch
Published 2022-08-10 · Modified
7.5EPSS 0.021
CVE-2022-39209
Uncontrolled Resource Consumption in cmark-gfm
Published 2022-09-15 · Modified
7.5EPSS 0.021
CVE-2022-32082
MariaDB v10.5 to v10.7 was discovered to contain an assertion failure at table->get_ref_count() == 0 in dict0dict.cc.
Published 2022-07-01 · Modified
7.5EPSS 0.021
CVE-2022-29536
In GNOME Epiphany before 41.4 and 42.x before 42.2, an HTML document can trigger a client buffer overflow (in ephy_string_shorten in the UI process) via a long page title. The issue occurs because the number of bytes for a UTF-8 ellipsis character is not properly considered.
Published 2022-04-20 · Modified
7.5EPSS 0.020
CVE-2022-28487
Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vulnerability is to data confidentiality.
Published 2022-05-04 · Modified
7.5EPSS 0.020
CVE-2022-25763
Improper input validation on HTTP/2 headers
Published 2022-08-10 · Modified
7.5EPSS 0.020
CVE-2022-3080
BIND 9 resolvers configured to answer from stale cache with zero stale-answer-client-timeout may terminate unexpectedly
Published 2022-09-21 · Modified
7.5EPSS 0.019
CVE-2022-40188
Knot Resolver before 5.5.3 allows remote attackers to cause a denial of service (CPU consumption) because of algorithmic complexity. During an attack, an authoritative server must return large NS sets or address sets.
Published 2022-09-23 · Modified
7.5EPSS 0.019
CVE-2022-35922
Memory allocation based on untrusted length in rust-websocket
Published 2022-08-01 · Modified
7.5EPSS 0.019
CVE-2022-3517
A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.
Published 2022-10-17 · Modified
7.5EPSS 0.018
CVE-2023-25193
hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.
Published 2023-02-04 · Modified
7.5EPSS 0.018
CVE-2022-42916
In curl before 7.86.0, the HSTS check could be bypassed to trick it into staying with HTTP. Using its HSTS support, curl can be instructed to use HTTPS directly (instead of using an insecure cleartext HTTP step) even when HTTP is provided in the URL. This mechanism could be bypassed if the host name in the given URL uses IDN characters that get replaced with ASCII counterparts as part of the IDN conversion, e.g., using the character UTF-8 U+3002 (IDEOGRAPHIC FULL STOP) instead of the common ASCII full stop of U+002E (.). The earliest affected version is 7.77.0 2021-05-26.
Published 2022-10-29 · Modified
7.5EPSS 0.018
← Prev9 / 18Next →