Fedoraproject

Fedora

5319 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.18%
  • Published 14.02.2022 22:15:08
  • Last modified 03.11.2025 22:15:55

Infinite loop in RTMPT protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file

Exploit
  • EPSS 0.52%
  • Published 14.02.2022 22:15:07
  • Last modified 03.11.2025 22:15:54

Crash in the CMS protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file

Exploit
  • EPSS 0.27%
  • Published 14.02.2022 22:15:07
  • Last modified 03.11.2025 22:15:54

Unaligned access in the CSN.1 protocol dissector in Wireshark 3.6.0 to 3.6.1 and 3.4.0 to 3.4.11 allows denial of service via packet injection or crafted capture file

Exploit
  • EPSS 1.25%
  • Published 14.02.2022 12:15:23
  • Last modified 03.11.2025 21:15:50

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Exploit
  • EPSS 0.39%
  • Published 14.02.2022 12:15:22
  • Last modified 21.11.2024 06:38:56

Cross-site Scripting (XSS) - Reflected in GitHub repository phoronix-test-suite/phoronix-test-suite prior to 10.8.2.

  • EPSS 0.11%
  • Published 14.02.2022 12:15:15
  • Last modified 21.11.2024 06:32:13

In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. This occurs because of recursive PROMPT_SUBST expansion.

Exploit
  • EPSS 0.46%
  • Published 12.02.2022 00:15:08
  • Last modified 21.11.2024 06:37:56

Inappropriate implementation in Compositing in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

Exploit
  • EPSS 0.14%
  • Published 12.02.2022 00:15:08
  • Last modified 21.11.2024 06:37:56

Policy bypass in Blink in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

Exploit
  • EPSS 0.51%
  • Published 12.02.2022 00:15:08
  • Last modified 21.11.2024 06:37:56

Inappropriate implementation in WebShare in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially hide the contents of the Omnibox (URL bar) via a crafted HTML page.

Exploit
  • EPSS 0.26%
  • Published 12.02.2022 00:15:08
  • Last modified 21.11.2024 06:37:56

Inappropriate implementation in Passwords in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to potentially leak cross-origin data via a malicious website.