Fedoraproject

Fedora

5319 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.13%
  • Veröffentlicht 26.01.2021 18:16:27
  • Zuletzt bearbeitet 21.11.2024 06:20:54

Go before 1.14.14 and 1.15.x before 1.15.7 on Windows is vulnerable to Command Injection and remote code execution when using the "go get" command to fetch modules that make use of cgo (for example, cgo can execute a gcc program from an untrusted dow...

  • EPSS 1.21%
  • Veröffentlicht 20.01.2021 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:18:28

A flaw was found in dnsmasq before version 2.83. When receiving a query, dnsmasq does not check for an existing pending request for the same name and forwards a new request. By default, a maximum of 150 pending queries can be sent to upstream servers...

  • EPSS 40.15%
  • Veröffentlicht 20.01.2021 17:15:13
  • Zuletzt bearbeitet 21.11.2024 05:18:28

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. This flaw allows a remote attacker, who can create valid DNS replies, to ...

  • EPSS 44.07%
  • Veröffentlicht 20.01.2021 17:15:12
  • Zuletzt bearbeitet 21.11.2024 05:18:26

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in the way RRSets are sorted before validating with DNSSEC data. An attacker on the network, who can forge DNS replies such as that they are accepted as vali...

  • EPSS 38.49%
  • Veröffentlicht 20.01.2021 17:15:12
  • Zuletzt bearbeitet 21.11.2024 05:18:27

A flaw was found in dnsmasq before 2.83. A buffer overflow vulnerability was discovered in the way dnsmasq extract names from DNS packets before validating them with DNSSEC data. An attacker on the network, who can create valid DNS replies, could use...

  • EPSS 51.24%
  • Veröffentlicht 20.01.2021 16:15:14
  • Zuletzt bearbeitet 21.11.2024 05:18:27

A flaw was found in dnsmasq before version 2.83. A heap-based buffer overflow was discovered in dnsmasq when DNSSEC is enabled and before it validates the received DNS entries. A remote attacker, who can create valid DNS replies, could use this flaw ...

  • EPSS 0.99%
  • Veröffentlicht 20.01.2021 16:15:14
  • Zuletzt bearbeitet 21.11.2024 05:18:27

A flaw was found in dnsmasq before version 2.83. When getting a reply from a forwarded query, dnsmasq checks in the forward.c:reply_query() if the reply destination address/port is used by the pending forwarded queries. However, it does not use the a...

  • EPSS 0.87%
  • Veröffentlicht 20.01.2021 16:15:14
  • Zuletzt bearbeitet 21.11.2024 05:18:27

A flaw was found in dnsmasq before version 2.83. When getting a reply from a forwarded query, dnsmasq checks in forward.c:reply_query(), which is the forwarded query that matches the reply, by only using a weak hash of the query name. Due to the weak...

  • EPSS 0.34%
  • Veröffentlicht 20.01.2021 15:15:46
  • Zuletzt bearbeitet 21.11.2024 06:02:10

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via m...

  • EPSS 0.35%
  • Veröffentlicht 20.01.2021 15:15:46
  • Zuletzt bearbeitet 21.11.2024 06:02:11

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pro...