Fedoraproject

Fedora

5335 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.07%
  • Veröffentlicht 05.09.2022 05:15:07
  • Zuletzt bearbeitet 21.11.2024 07:18:20

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

Exploit
  • EPSS 0.1%
  • Veröffentlicht 03.09.2022 16:15:08
  • Zuletzt bearbeitet 03.11.2025 21:15:53

Use After Free in GitHub repository vim/vim prior to 9.0.0360.

  • EPSS 0.48%
  • Veröffentlicht 02.09.2022 03:15:07
  • Zuletzt bearbeitet 21.11.2024 07:17:42

libdwarf 0.4.1 has a double free in _dwarf_exec_frame_instr in dwarf_frame.c.

Exploit
  • EPSS 1.11%
  • Veröffentlicht 01.09.2022 21:15:10
  • Zuletzt bearbeitet 22.08.2025 10:31:41

Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.

  • EPSS 0.43%
  • Veröffentlicht 01.09.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:22:32

Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially cause a denial of service (segmentation fault and crash) via a crafted mangled symbol.

Exploit
  • EPSS 0.3%
  • Veröffentlicht 01.09.2022 21:15:08
  • Zuletzt bearbeitet 22.08.2025 20:19:52

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

  • EPSS 0.12%
  • Veröffentlicht 01.09.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:41:08

An Improper Certificate Validation attack was found in Openshift. A re-encrypt Route with destinationCACertificate explicitly set to the default serviceCA skips internal Service TLS certificate validation. This flaw allows an attacker to exploit an i...

  • EPSS 0.02%
  • Veröffentlicht 31.08.2022 16:15:11
  • Zuletzt bearbeitet 21.11.2024 07:18:39

A race condition was found in the Linux kernel's IP framework for transforming packets (XFRM subsystem) when multiple calls to xfrm_probe_algs occurred simultaneously. This flaw could allow a local attacker to potentially trigger an out-of-bounds wri...

Exploit
  • EPSS 0.69%
  • Veröffentlicht 31.08.2022 16:15:10
  • Zuletzt bearbeitet 21.11.2024 07:00:23

A permissive list of allowed inputs flaw was found in DPDK. This issue allows a remote attacker to cause a denial of service triggered by sending a crafted Vhost header to DPDK.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 31.08.2022 16:15:10
  • Zuletzt bearbeitet 21.11.2024 07:00:26

A flaw was found in the Linux kernel’s KVM when attempting to set a SynIC IRQ. This issue makes it possible for a misbehaving VMM to write to SYNIC/STIMER MSRs, causing a NULL pointer dereference. This flaw allows an unprivileged local attacker on th...