Fedoraproject

Fedora

5335 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 20.04.2022 10:15:08
  • Zuletzt bearbeitet 21.11.2024 06:57:10

The generic P-256 feature in crypto/elliptic in Go before 1.17.9 and 1.18.x before 1.18.1 allows a panic via long scalar input.

  • EPSS 0.13%
  • Veröffentlicht 20.04.2022 10:15:07
  • Zuletzt bearbeitet 21.11.2024 06:50:50

encoding/pem in Go before 1.17.9 and 1.18.x before 1.18.1 has a Decode stack overflow via a large amount of PEM data.

Exploit
  • EPSS 1.29%
  • Veröffentlicht 19.04.2022 17:15:11
  • Zuletzt bearbeitet 21.11.2024 06:52:30

The package git before 1.11.0 are vulnerable to Command Injection via git argument injection. When calling the fetch(remote = 'origin', opts = {}) function, the remote parameter is passed to the git fetch subcommand in a way that additional flags can...

  • EPSS 86.06%
  • Veröffentlicht 19.04.2022 16:17:10
  • Zuletzt bearbeitet 21.11.2024 06:58:35

HashiCorp Consul and Consul Enterprise up to 1.9.16, 1.10.9, and 1.11.4 may allow server side request forgery when the Consul client agent follows redirects returned by HTTP health check endpoints. Fixed in 1.9.17, 1.10.10, and 1.11.5.

  • EPSS 0.43%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 03.11.2025 22:15:52

A heap double free issue was found in Opensc before version 0.22.0 in sc_pkcs15_free_tokeninfo.

  • EPSS 0.06%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 03.11.2025 22:15:52

A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.

  • EPSS 0.06%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 03.11.2025 22:15:52

A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that could potentially crash programs using the library.

  • EPSS 0.09%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 03.11.2025 22:15:52

Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash programs using the library.

  • EPSS 0.09%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 03.11.2025 22:15:52

Stack buffer overflow issues were found in Opensc before version 0.22.0 in various places that could potentially crash programs using the library.

  • EPSS 0.02%
  • Veröffentlicht 18.04.2022 17:15:16
  • Zuletzt bearbeitet 21.11.2024 06:56:06

A flaw was found in cri-o, where containers were incorrectly started with non-empty default permissions. A vulnerability was found in Moby (Docker Engine) where containers started incorrectly with non-empty inheritable Linux process capabilities. Thi...