Fedoraproject

Fedora

5319 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.01%
  • Veröffentlicht 14.04.2021 13:15:13
  • Zuletzt bearbeitet 21.11.2024 05:50:49

Nextcloud Desktop Client prior to 3.1.3 is vulnerable to resource injection by way of missing validation of URLs, allowing a malicious server to execute remote commands. User interaction is needed for exploitation.

  • EPSS 0.71%
  • Veröffentlicht 14.04.2021 07:15:12
  • Zuletzt bearbeitet 21.11.2024 05:29:16

In the standard library in Rust before 1.52.0, there is an optimization for joining strings that can cause uninitialized bytes to be exposed (or the program to crash) if the borrowed string changes after its length is checked.

Exploit
  • EPSS 1.89%
  • Veröffentlicht 14.04.2021 07:15:12
  • Zuletzt bearbeitet 21.11.2024 06:05:12

In the standard library in Rust before 1.52.0, a double free can occur in the Vec::from_iter function if freeing the element panics.

  • EPSS 0.2%
  • Veröffentlicht 12.04.2021 22:15:13
  • Zuletzt bearbeitet 21.11.2024 05:48:15

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 requests to user provided domains were not restricted to ...

  • EPSS 0.55%
  • Veröffentlicht 12.04.2021 22:15:13
  • Zuletzt bearbeitet 21.11.2024 05:48:16

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synapse is missing input validation of some parameters on...

  • EPSS 0.52%
  • Veröffentlicht 12.04.2021 21:15:14
  • Zuletzt bearbeitet 21.11.2024 05:48:16

Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging and VoIP. In Synapse before version 1.28.0 Synapse is missing input validation of some parameters on...

Exploit
  • EPSS 0.51%
  • Veröffentlicht 11.04.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 06:00:21

In the standard library in Rust before 1.52.0, the Zip implementation has a panic safety issue. It calls __iterator_get_unchecked() more than once for the same index when the underlying iterator panics (in certain conditions). This bug could lead to ...

Exploit
  • EPSS 0.71%
  • Veröffentlicht 11.04.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 06:00:21

In the standard library in Rust before 1.52.0, the Zip implementation calls __iterator_get_unchecked() more than once for the same index (under certain conditions) when next_back() and next() are used together. This bug could lead to a memory safety ...

Exploit
  • EPSS 0.67%
  • Veröffentlicht 11.04.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 06:00:21

In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer overflow. This bug can lead to a buffer overflow when a consumed Zip iterator is used again.

  • EPSS 0.59%
  • Veröffentlicht 09.04.2021 22:15:17
  • Zuletzt bearbeitet 21.11.2024 05:47:45

Use after free in screen sharing in Google Chrome prior to 89.0.4389.114 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.