Fedoraproject

Fedora

5319 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.19%
  • Published 08.11.2019 15:15:11
  • Last modified 21.11.2024 04:18:41

A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests. An unauthenticated attacker could crash the Ceph RGW server by sending valid HTTP headers and terminating the connection, resulting in a remote denia...

  • EPSS 0.62%
  • Published 07.11.2019 18:15:11
  • Last modified 21.11.2024 01:34:17

OpenTTD before 1.1.5 contains a Denial of Service (slow read attack) that prevents users from joining the server.

  • EPSS 0.02%
  • Published 07.11.2019 16:15:11
  • Last modified 21.11.2024 04:33:36

A memory leak in the ccp_run_sha_cmd() function in drivers/crypto/ccp/ccp-ops.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-128c66429247.

  • EPSS 0.09%
  • Published 07.11.2019 16:15:11
  • Last modified 21.11.2024 04:33:36

A memory leak in the af9005_identify_state() function in drivers/media/usb/dvb-usb/af9005.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption), aka CID-2289adbfa559.

  • EPSS 0.13%
  • Published 07.11.2019 16:15:11
  • Last modified 21.11.2024 04:33:37

A memory leak in the sof_set_get_large_ctrl_data() function in sound/soc/sof/ipc.c in the Linux kernel through 5.3.9 allows attackers to cause a denial of service (memory consumption) by triggering sof_get_ctrl_copy_params() failures, aka CID-45c1380...

Exploit
  • EPSS 4.58%
  • Published 07.11.2019 06:15:10
  • Last modified 21.11.2024 04:33:36

DjVuLibre 3.5.27 has a NULL pointer dereference in the function DJVU::filter_fv at IW44EncodeCodec.cpp.

  • EPSS 0.22%
  • Published 06.11.2019 19:15:11
  • Last modified 21.11.2024 01:20:22

MySQL-GUI-tools (mysql-administrator) leaks passwords into process list after with launch of mysql text console

  • EPSS 0.49%
  • Published 06.11.2019 19:15:11
  • Last modified 21.11.2024 02:42:51

Pagure: XSS possible in file attachment endpoint

  • EPSS 6.75%
  • Published 06.11.2019 10:15:10
  • Last modified 21.11.2024 04:18:40

A flaw was found in the samba client, all samba versions before samba 4.11.2, 4.10.10 and 4.9.15, where a malicious server can supply a pathname to the client with separators. This could allow the client to access files and folders outside of the SMB...

  • EPSS 1.27%
  • Published 06.11.2019 10:15:10
  • Last modified 21.11.2024 04:27:27

A flaw was found in Samba, all versions starting samba 4.5.0 before samba 4.9.15, samba 4.10.10, samba 4.11.2, in the way it handles a user password change or a new password for a samba user. The Samba Active Directory Domain Controller can be config...