Fedoraproject

Fedora

5319 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.58%
  • Published 27.03.2023 21:15:10
  • Last modified 24.02.2025 18:15:16

A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege...

  • EPSS 0.02%
  • Published 27.03.2023 21:15:10
  • Last modified 23.04.2025 17:16:24

A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system.

  • EPSS 0.01%
  • Published 27.03.2023 21:15:09
  • Last modified 24.02.2025 20:15:31

A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device node. While this access is unlike...

  • EPSS 0.16%
  • Published 24.03.2023 04:15:55
  • Last modified 19.02.2025 22:15:16

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then...

  • EPSS 0.72%
  • Published 23.03.2023 21:15:20
  • Last modified 21.11.2024 07:54:51

The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).

  • EPSS 0.21%
  • Published 23.03.2023 21:15:20
  • Last modified 21.11.2024 07:54:52

Insufficient filtering of grade report history made it possible for teachers to access the names of users they could not otherwise access.

  • EPSS 0.15%
  • Published 23.03.2023 21:15:19
  • Last modified 25.02.2025 20:15:31

An uncontrolled resource consumption vulnerability was discovered in HAProxy which could crash the service. This issue could allow an authenticated remote attacker to run a specially crafted malicious server in an OpenShift cluster. The biggest impac...

  • EPSS 0.01%
  • Published 23.03.2023 21:15:19
  • Last modified 25.02.2025 20:15:32

A flaw was found in KVM. When calling the KVM_GET_DEBUGREGS ioctl, on 32-bit systems, there might be some uninitialized portions of the kvm_debugregs structure that could be copied to userspace, causing an information leak.

Exploit
  • EPSS 0.13%
  • Published 23.03.2023 20:15:14
  • Last modified 21.11.2024 07:38:50

A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many...

  • EPSS 0.05%
  • Published 23.03.2023 20:15:14
  • Last modified 21.11.2024 07:39:24

A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to allocate and initialize a huge number of page tables to be used as a ring of descriptors for CQ and async events, potentially ...