VendorsFedora Projectfedora39
Vulnerabilities

Fedora Project Fedora 39

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

493CVEs
CVE-2024-24576
Rusts's `std::process::Command` did not properly escape arguments of batch files on Windows
Published 2024-04-09 · Analyzed
10.0EPSS 0.203
CVE-2022-22995
Western Digital My Cloud OS 5 and My Cloud Home Unauthenticated Arbitrary File Write Vulnerability in Netatalk
Published 2022-03-25 · Modified
10.0EPSS 0.028
CVE-2023-3432
Server-Side Request Forgery (SSRF) in plantuml/plantuml
Published 2023-06-27 · Modified
10.0EPSS 0.009
CVE-2012-1823
sapi/cgi/cgi_main.c in PHP before 5.3.12 and 5.4.x before 5.4.2, when configured as a CGI script (aka php-cgi), does not properly handle query strings that lack an = (equals sign) character, which allows remote attackers to execute arbitrary code by placing command-line options in the query string, related to lack of skipping a certain php_getopt for the 'd' case.
Published 2012-05-11 · Analyzed
9.8KEV4 PoCEPSS 1.000
CVE-2024-4577
Argument Injection in PHP-CGI
Published 2024-06-09 · Analyzed
9.8KEV1 PoCEPSS 1.000
CVE-2024-3116
Remote Code Execution Vulnerability through the validate binary path API in pgAdmin 4
Published 2024-04-04 · Modified
9.8EPSS 0.656
CVE-2024-1676
Inappropriate implementation in Navigation in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Low)
Published 2024-02-21 · Analyzed
9.8EPSS 0.188
CVE-2024-1283
Heap buffer overflow in Skia in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-02-06 · Modified
9.8EPSS 0.187
CVE-2024-32459
FreeRDP Out-Of-Bounds Read in ncrush_decompress
Published 2024-04-22 · Modified
9.8EPSS 0.037
CVE-2023-3961
Samba: smbd allows client access to unix domain sockets on the file system as root
Published 2023-11-03 · Modified
9.8EPSS 0.024
CVE-2024-32039
FreeRDP Integer overflow & OutOfBound Write in clear_decompress_residual_data
Published 2024-04-22 · Modified
9.8EPSS 0.023
CVE-2023-6816
Xorg-x11-server: heap buffer overflow in devicefocusevent and procxiquerypointer
Published 2024-01-18 · Modified
9.8EPSS 0.021
CVE-2023-46850
Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a remote peer.
Published 2023-11-11 · Modified
9.8EPSS 0.020
CVE-2024-32458
FreeRDP Out-Of-Bounds Read in planar_skip_plane_rle
Published 2024-04-22 · Modified
9.8EPSS 0.019
CVE-2024-32041
FreeRDP OutOfBound Read in zgfx_decompress_segment
Published 2024-04-22 · Analyzed
9.8EPSS 0.019
CVE-2024-32040
FreeRDP vulnerable to integer underflow in nsc_rle_decode
Published 2024-04-22 · Modified
9.8EPSS 0.019
CVE-2024-32460
FreeRDP Out-Of-Bounds Read in interleaved_decompress
Published 2024-04-22 · Modified
9.8EPSS 0.019
CVE-2023-39332
Various `node:fs` functions allow specifying paths as either strings or `Uint8Array` objects. In Node.js environments, the `Buffer` class extends the `Uint8Array` class. Node.js prevents path traversal through strings (see CVE-2023-30584) and `Buffer` objects (see CVE-2023-32004), but not through non-`Buffer` `Uint8Array` objects. This is distinct from CVE-2023-32004 which only referred to `Buffer` objects. However, the vulnerability follows the same pattern using `Uint8Array` instead of `Buffer`. Please note that at the time this CVE was issued, the permission model is an experimental feature of Node.js.
Published 2023-10-18 · Modified
9.8EPSS 0.018
CVE-2023-45239
A lack of input validation exists in tac_plus prior to commit 4fdf178 which, when pre or post auth commands are enabled, allows an attacker who can control the username, rem-addr, or NAC address sent to tac_plus to inject shell commands and gain remote code execution on the tac_plus server.
Published 2023-10-06 · Modified
9.8EPSS 0.018
CVE-2024-22373
An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted DICOM file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
Published 2024-04-25 · Modified
9.8EPSS 0.016
CVE-2023-6395
Mock: privilege escalation for users that can access mock configuration
Published 2024-01-16 · Modified
9.8EPSS 0.016
CVE-2023-39352
Invalid offset validation leading to Out Of Bound Write in FreeRDP
Published 2023-08-31 · Modified
9.8EPSS 0.015
CVE-2023-40567
Out-Of-Bounds Write in FreeRDP
Published 2023-08-31 · Modified
9.8EPSS 0.015
CVE-2023-47212
A heap-based buffer overflow vulnerability exists in the comment functionality of stb _vorbis.c v1.22. A specially crafted .ogg file can lead to an out-of-bounds write. An attacker can provide a malicious file to trigger this vulnerability.
Published 2024-05-01 · Modified
9.8EPSS 0.014
CVE-2024-22391
A heap-based buffer overflow vulnerability exists in the LookupTable::SetLUT functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A specially crafted malformed file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
Published 2024-04-25 · Analyzed
9.8EPSS 0.014
CVE-2024-32658
FreeRDP ExtractRunLengthRegular* out of bound read
Published 2024-04-23 · Modified
9.8EPSS 0.014
CVE-2023-40186
IntegerOverflow leading to Out-Of-Bound Write Vulnerability in FreeRDP
Published 2023-08-31 · Modified
9.8EPSS 0.014
CVE-2023-40569
Out-Of-Bounds Write in FreeRDP
Published 2023-08-31 · Modified
9.8EPSS 0.013
CVE-2023-36328
Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute arbitrary code and cause a denial of service (DoS).
Published 2023-09-01 · Modified
9.8EPSS 0.013
CVE-2024-3209
UPX bele.h get_ne64 heap-based overflow
Published 2024-04-02 · Analyzed
9.8EPSS 0.012
CVE-2024-32659
freerdp_image_copy out of bound read
Published 2024-04-23 · Modified
9.8EPSS 0.012
CVE-2023-6879
heap buffer overflow in libaom
Published 2023-12-27 · Modified
9.8EPSS 0.012
CVE-2024-1284
Use after free in Mojo in Google Chrome prior to 121.0.6167.160 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Published 2024-02-06 · Modified
9.8EPSS 0.011
CVE-2024-31581
FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_template.c. This vulnerability allows attackers to cause undefined behavior within the application.
Published 2024-04-17 · Modified
9.8EPSS 0.011
CVE-2024-36048
QAbstractOAuth in Qt Network Authorization in Qt before 5.15.17, 6.x before 6.2.13, 6.3.x through 6.5.x before 6.5.6, and 6.6.x through 6.7.x before 6.7.1 uses only the time to seed the PRNG, which may result in guessable values.
Published 2024-05-18 · Modified
9.8EPSS 0.010
CVE-2024-3847
Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass content security policy via a crafted HTML page. (Chromium security severity: Low)
Published 2024-04-17 · Analyzed
9.8EPSS 0.009
CVE-2024-3845
Inappropriate implementation in Networks in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass mixed content policy via a crafted HTML page. (Chromium security severity: Low)
Published 2024-04-17 · Analyzed
9.8EPSS 0.009
CVE-2024-32662
FreeRDP rdp_redirection_read_base64_wchar out of bound read
Published 2024-04-23 · Analyzed
9.8EPSS 0.008
CVE-2024-0808
Integer underflow in WebUI in Google Chrome prior to 121.0.6167.85 allowed a remote attacker to potentially exploit heap corruption via a malicious file. (Chromium security severity: High)
Published 2024-01-23 · Modified
9.8EPSS 0.005
CVE-2023-6345
Integer overflow in Skia in Google Chrome prior to 119.0.6045.199 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a malicious file. (Chromium security severity: High)
Published 2023-11-29 · Analyzed
9.6KEVEPSS 0.165
1 / 13Next →