Fedoraproject

Fedora

5319 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.63%
  • Veröffentlicht 08.08.2023 18:15:11
  • Zuletzt bearbeitet 21.11.2024 07:41:08

A side channel vulnerability on some of the AMD CPUs may allow an attacker to influence the return address prediction. This may result in speculative execution at an attacker-controlled address, potentially leading to information disclosure. ...

  • EPSS 6.11%
  • Veröffentlicht 08.08.2023 18:15:11
  • Zuletzt bearbeitet 21.11.2024 07:41:10

A division-by-zero error on some AMD processors can potentially return speculative data resulting in loss of confidentiality. 

  • EPSS 0.04%
  • Veröffentlicht 08.08.2023 06:15:47
  • Zuletzt bearbeitet 21.11.2024 08:16:10

ImageMagick before 6.9.12-91 allows attackers to cause a denial of service (memory consumption) in Magick::Draw.

  • EPSS 0.15%
  • Veröffentlicht 07.08.2023 14:15:11
  • Zuletzt bearbeitet 21.11.2024 08:34:28

A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.

  • EPSS 0.01%
  • Veröffentlicht 07.08.2023 14:15:11
  • Zuletzt bearbeitet 21.11.2024 08:34:35

A flaw was found in the Linux kernel's TUN/TAP functionality. This issue could allow a local user to bypass network filters and gain unauthorized access to some resources. The original patches fixing CVE-2023-1076 are incorrect or incomplete. The pro...

  • EPSS 5.66%
  • Veröffentlicht 04.08.2023 16:15:10
  • Zuletzt bearbeitet 21.11.2024 08:13:41

Cargo downloads the Rust project’s dependencies and compiles the project. Cargo prior to version 0.72.2, bundled with Rust prior to version 1.71.1, did not respect the umask when extracting crate archives on UNIX-like systems. If the user downloaded ...

  • EPSS 0.01%
  • Veröffentlicht 04.08.2023 14:15:12
  • Zuletzt bearbeitet 21.11.2024 08:34:27

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary h...

  • EPSS 0.01%
  • Veröffentlicht 03.08.2023 15:15:33
  • Zuletzt bearbeitet 21.11.2024 08:34:27

A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device is detaching due to a possible rearming of the flower_stats_timer from the work queue. This flaw allows a local user to crash the s...

  • EPSS 0.01%
  • Veröffentlicht 03.08.2023 15:15:32
  • Zuletzt bearbeitet 21.11.2024 08:34:27

A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system, causing a denial of service c...

  • EPSS 0.01%
  • Veröffentlicht 03.08.2023 15:15:29
  • Zuletzt bearbeitet 21.11.2024 08:16:38

A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a...