Fedoraproject

Fedora

5326 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 11.12.2019 18:16:19
  • Zuletzt bearbeitet 21.11.2024 04:34:59

An issue was discovered in Xen through 4.12.x allowing 32-bit Arm guest OS users to cause a denial of service (out-of-bounds access) because certain bit iteration is mishandled. In a number of places bitmaps are being used by the hypervisor to track ...

  • EPSS 0.11%
  • Veröffentlicht 11.12.2019 18:16:19
  • Zuletzt bearbeitet 21.11.2024 04:34:59

An issue was discovered in Xen through 4.12.x allowing x86 guest OS users to cause a denial of service (infinite loop) because certain bit iteration is mishandled. In a number of places bitmaps are being used by the hypervisor to track certain state....

  • EPSS 2.07%
  • Veröffentlicht 11.12.2019 18:16:19
  • Zuletzt bearbeitet 21.11.2024 04:34:59

An issue was discovered in Xen through 4.12.x allowing x86 HVM/PVH guest OS users to cause a denial of service (guest OS crash) because VMX VMEntry checks mishandle a certain case. Please see XSA-260 for background on the MovSS shadow. Please see XSA...

  • EPSS 0.63%
  • Veröffentlicht 11.12.2019 13:15:10
  • Zuletzt bearbeitet 21.11.2024 01:54:59

smokeping before 2.6.9 has XSS (incomplete fix for CVE-2012-0790)

Exploit
  • EPSS 1.34%
  • Veröffentlicht 11.12.2019 00:15:13
  • Zuletzt bearbeitet 21.11.2024 04:35:02

Arbitrary command execution is possible in Git before 2.20.2, 2.21.x before 2.21.1, 2.22.x before 2.22.2, 2.23.x before 2.23.1, and 2.24.x before 2.24.1 because a "git submodule update" operation can run commands found in the .gitmodules file of a ma...

  • EPSS 1.65%
  • Veröffentlicht 10.12.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:27:31

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the (poorly named) dnsserver RPC pipe provides administrative facilities to modify DNS records and zones. Samba, when acting as an AD DC, stor...

  • EPSS 4.67%
  • Veröffentlicht 10.12.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:27:33

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in an...

  • EPSS 0.62%
  • Veröffentlicht 10.12.2019 23:15:10
  • Zuletzt bearbeitet 21.11.2024 04:27:37

A flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8. When the libssh SCP client connects to a server, the scp command, which includes a user-provided path, is executed on the server-side. In case the ...

  • EPSS 4.17%
  • Veröffentlicht 10.12.2019 22:15:15
  • Zuletzt bearbeitet 21.11.2024 04:25:39

Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.

  • EPSS 0.28%
  • Veröffentlicht 10.12.2019 22:15:15
  • Zuletzt bearbeitet 21.11.2024 04:25:39

Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.