Fedoraproject

Fedora

5365 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.35%
  • Veröffentlicht 12.10.2023 12:15:10
  • Zuletzt bearbeitet 04.11.2025 20:17:07

A vulnerability was found in libXpm where a vulnerability exists due to a boundary condition, a local user can trigger an out-of-bounds read error and read contents of memory on the system.

  • EPSS 0.6%
  • Veröffentlicht 11.10.2023 23:15:11
  • Zuletzt bearbeitet 21.11.2024 08:41:52

Inappropriate implementation in Fullscreen in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension. (Chromium security severity...

  • EPSS 1.3%
  • Veröffentlicht 11.10.2023 23:15:10
  • Zuletzt bearbeitet 30.04.2025 21:15:53

Use after free in Site Isolation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)

  • EPSS 0.59%
  • Veröffentlicht 11.10.2023 23:15:10
  • Zuletzt bearbeitet 21.11.2024 08:41:50

Inappropriate implementation in DevTools in Google Chrome prior to 118.0.5993.70 allowed an attacker who convinced a user to install a malicious extension to bypass discretionary access control via a crafted Chrome Extension. (Chromium security sever...

  • EPSS 1.14%
  • Veröffentlicht 11.10.2023 23:15:10
  • Zuletzt bearbeitet 21.11.2024 08:41:52

Inappropriate implementation in Navigation in Google Chrome prior to 118.0.5993.70 allowed a remote attacker to spoof security UI via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 3.8%
  • Veröffentlicht 11.10.2023 22:15:09
  • Zuletzt bearbeitet 21.11.2024 08:15:09

A malicious HTTP/2 client which rapidly creates requests and immediately resets them can cause excessive server resource consumption. While the total number of requests is bounded by the http2.Server.MaxConcurrentStreams setting, resetting an in-prog...

Exploit
  • EPSS 0.54%
  • Veröffentlicht 11.10.2023 20:15:10
  • Zuletzt bearbeitet 17.09.2026 17:59:12

Use After Free in GitHub repository vim/vim prior to v9.0.2010.

  • EPSS 1.38%
  • Veröffentlicht 11.10.2023 07:15:10
  • Zuletzt bearbeitet 21.11.2024 08:11:53

An integer overflow in xerces-c++ 3.2.3 in BigFix Platform allows remote attackers to cause out-of-bound access via HTTP request.

  • EPSS 1.17%
  • Veröffentlicht 10.10.2023 18:15:19
  • Zuletzt bearbeitet 21.11.2024 08:26:24

Synapse is an open-source Matrix homeserver written and maintained by the Matrix.org Foundation. Prior to version 1.94.0, a malicious server ACL event can impact performance temporarily or permanently leading to a persistent denial of service. Homese...

Warnung Medienbericht Exploit
  • EPSS 100%
  • Veröffentlicht 10.10.2023 14:15:10
  • Zuletzt bearbeitet 11.08.2026 19:37:30

The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.