Fedoraproject

Fedora

5319 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.05%
  • Published 31.12.2019 19:15:10
  • Last modified 21.11.2024 01:54:59

gksu-polkit-0.0.3-6.fc18 was reported as fixing the issue in CVE-2012-5617 but the patch was improperly applied and it did not fixed the security issue.

Exploit
  • EPSS 1.19%
  • Published 31.12.2019 19:15:10
  • Last modified 21.11.2024 01:55:25

The eglibc package before 2.14 incorrectly handled the getaddrinfo() function. An attacker could use this issue to cause a denial of service.

  • EPSS 11.12%
  • Published 31.12.2019 15:15:11
  • Last modified 21.11.2024 04:38:09

In Pure-FTPd 1.0.49, a stack exhaustion issue was discovered in the listdir function in ls.c.

Exploit
  • EPSS 0.07%
  • Published 30.12.2019 20:15:11
  • Last modified 21.11.2024 01:44:43

The file /etc/openstack-dashboard/local_settings within Red Hat OpenStack Platform 2.0 and RHOS Essex Release (python-django-horizon package before 2012.1.1) is world readable and exposes the secret key value.

  • EPSS 6.12%
  • Published 30.12.2019 20:15:11
  • Last modified 21.11.2024 01:45:02

A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets. A remote attacker could send a specially-crafted packet that, when processed would lead to memory exhaustion or excessive CPU consum...

Exploit
  • EPSS 0.75%
  • Published 30.12.2019 04:15:11
  • Last modified 21.11.2024 04:38:02

The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file, because of ImageExtractor.cpp.

Exploit
  • EPSS 0.32%
  • Published 27.12.2019 22:15:11
  • Last modified 11.04.2025 12:27:55

A floating-point exception was discovered in PackLinuxElf::elf_hash in p_lx_elf.cpp in UPX 3.95. The vulnerability causes an application crash, which leads to denial of service.

Exploit
  • EPSS 0.34%
  • Published 27.12.2019 02:15:10
  • Last modified 11.04.2025 12:27:55

A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

  • EPSS 0.6%
  • Published 26.12.2019 17:15:13
  • Last modified 21.11.2024 04:31:11

In Waitress through version 1.4.0, if a proxy server is used in front of waitress, an invalid request may be sent by an attacker that bypasses the front-end and is parsed differently by waitress leading to a potential for HTTP request smuggling. Spec...

  • EPSS 0.15%
  • Published 24.12.2019 16:15:11
  • Last modified 21.11.2024 04:35:44

xmlParseBalancedChunkMemoryRecover in parser.c in libxml2 before 2.9.10 has a memory leak related to newDoc->oldNs.