Fedoraproject

Fedora

5353 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 7.04%
  • Veröffentlicht 09.03.2021 22:15:12
  • Zuletzt bearbeitet 21.11.2024 05:59:06

Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bounds read in WCCP protocol data. This can be leveraged as part of a chain for remote code execution as nobody.

  • EPSS 0.41%
  • Veröffentlicht 09.03.2021 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:27:29

A heap-based buffer overflow flaw was found in libtiff in the handling of TIFF images in libtiff's TIFF2PDF tool. A specially crafted TIFF file can lead to arbitrary code execution. The highest threat from this vulnerability is to confidentiality, in...

Exploit
  • EPSS 65.68%
  • Veröffentlicht 09.03.2021 20:15:13
  • Zuletzt bearbeitet 21.11.2024 05:47:58

Git is an open-source distributed revision control system. In affected versions of Git a specially crafted repository that contains symbolic links as well as files using a clean/smudge filter such as Git LFS, may cause just-checked out script to be e...

  • EPSS 0.1%
  • Veröffentlicht 09.03.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 05:27:29

A flaw was found in libtiff. Due to a memory allocation failure in tif_read.c, a crafted TIFF file can lead to an abort, resulting in denial of service.

  • EPSS 0.04%
  • Veröffentlicht 09.03.2021 20:15:12
  • Zuletzt bearbeitet 21.11.2024 05:27:29

In LibTIFF, there is a memory malloc failure in tif_pixarlog.c. A crafted TIFF document can lead to an abort, resulting in a remote denial of service attack.

  • EPSS 0.13%
  • Veröffentlicht 09.03.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:46:12

A flaw was found in ImageMagick in MagickCore/visual-effects.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability ...

  • EPSS 0.23%
  • Veröffentlicht 09.03.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:46:12

A flaw was found in ImageMagick in coders/webp.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system a...

  • EPSS 0.17%
  • Veröffentlicht 09.03.2021 19:15:12
  • Zuletzt bearbeitet 21.11.2024 05:46:12

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to ...

Exploit
  • EPSS 0.97%
  • Veröffentlicht 09.03.2021 18:15:17
  • Zuletzt bearbeitet 21.11.2024 05:47:42

Inappropriate implementation in full screen mode in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

Exploit
  • EPSS 1.39%
  • Veröffentlicht 09.03.2021 18:15:17
  • Zuletzt bearbeitet 21.11.2024 05:47:43

Insufficient policy enforcement in Autofill in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.