Fedoraproject

Fedora

5335 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.35%
  • Veröffentlicht 17.10.2022 18:15:12
  • Zuletzt bearbeitet 03.11.2025 22:16:00

A vulnerability was found in Exim and classified as problematic. This issue affects some unknown processing of the component Regex Handler. The manipulation leads to use after free. The name of the patch is 4e9ed49f8f12eb331b29bd5b6dc3693c520fddc2. I...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 17.10.2022 18:15:12
  • Zuletzt bearbeitet 13.05.2025 16:15:22

Jhead 3.06.0.1 allows attackers to execute arbitrary OS commands by placing them in a JPEG filename and then using the regeneration -rgt50 option.

  • EPSS 0.2%
  • Veröffentlicht 17.10.2022 16:15:22
  • Zuletzt bearbeitet 14.05.2025 21:15:52

An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format. A malicious client could use this flaw to make QEMU unresponsive by sending a specially crafted payload message, resulting in ...

  • EPSS 0.36%
  • Veröffentlicht 17.10.2022 13:15:10
  • Zuletzt bearbeitet 21.11.2024 07:19:44

A vulnerability classified as critical was found in X.org Server. Affected by this vulnerability is the function _GetCountedString of the file xkb/xkb.c. The manipulation leads to buffer overflow. It is recommended to apply a patch to fix this issue....

  • EPSS 0.47%
  • Veröffentlicht 17.10.2022 13:15:10
  • Zuletzt bearbeitet 21.11.2024 07:19:45

A vulnerability, which was classified as problematic, has been found in X.org Server. Affected by this issue is the function ProcXkbGetKbdByName of the file xkb/xkb.c. The manipulation leads to memory leak. It is recommended to apply a patch to fix t...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 14.10.2022 18:15:15
  • Zuletzt bearbeitet 15.05.2025 15:15:53

A vulnerability found in jasper. This security vulnerability happens because of a memory leak bug in function cmdopts_parse that can cause a crash or segmentation fault.

Exploit
  • EPSS 0.29%
  • Veröffentlicht 14.10.2022 18:15:14
  • Zuletzt bearbeitet 03.11.2025 21:15:52

A flaw was found In 389-ds-base. When the Content Synchronization plugin is enabled, an authenticated user can reach a NULL pointer dereference using a specially crafted query. This flaw allows an authenticated attacker to cause a denial of service. ...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 14.10.2022 00:15:09
  • Zuletzt bearbeitet 15.05.2025 15:16:06

An issue was discovered in the Linux kernel before 5.19.16. Attackers able to inject WLAN frames could cause a buffer overflow in the ieee80211_bss_info_update function in net/mac80211/scan.c.

Exploit
  • EPSS 0.35%
  • Veröffentlicht 14.10.2022 00:15:09
  • Zuletzt bearbeitet 15.05.2025 21:15:49

Various refcounting bugs in the multi-BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to trigger use-after-free conditions to potentially execute c...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 14.10.2022 00:15:09
  • Zuletzt bearbeitet 15.05.2025 21:15:49

A list management bug in BSS handling in the mac80211 stack in the Linux kernel 5.1 through 5.19.x before 5.19.16 could be used by local attackers (able to inject WLAN frames) to corrupt a linked list and, in turn, potentially execute code.