Fedoraproject

Fedora

5355 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.85%
  • Veröffentlicht 06.12.2010 21:05:48
  • Zuletzt bearbeitet 29.04.2026 01:13:23

OpenSSL before 0.9.8q, and 1.0.x before 1.0.0c, when SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG is enabled, does not properly prevent modification of the ciphersuite in the session cache, which allows remote attackers to force the downgrade to an uninte...

Exploit
  • EPSS 0.08%
  • Veröffentlicht 29.11.2010 16:00:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via...

  • EPSS 0.89%
  • Veröffentlicht 26.11.2010 20:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The sctp_auth_asoc_get_hmac function in net/sctp/auth.c in the Linux kernel before 2.6.36 does not properly validate the hmac_ids array of an SCTP peer, which allows remote attackers to cause a denial of service (memory corruption and panic) via a cr...

  • EPSS 0.06%
  • Veröffentlicht 26.11.2010 19:00:07
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The KVM implementation in the Linux kernel before 2.6.36 does not properly reload the FS and GS segment registers, which allows host OS users to cause a denial of service (host OS crash) via a KVM_RUN ioctl call in conjunction with a modified Local D...

  • EPSS 0.11%
  • Veröffentlicht 26.11.2010 19:00:06
  • Zuletzt bearbeitet 29.04.2026 01:13:23

drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly validate pointers to blocks of memory, which allows l...

Exploit
  • EPSS 0.11%
  • Veröffentlicht 26.11.2010 19:00:06
  • Zuletzt bearbeitet 29.04.2026 01:13:23

drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, which allows local users to write to arbitrary kerne...

  • EPSS 0.05%
  • Veröffentlicht 22.11.2010 13:00:19
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.

  • EPSS 2.84%
  • Veröffentlicht 17.11.2010 16:00:37
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple use-after-free vulnerabilities in OpenTTD 1.0.x before 1.0.5 allow (1) remote attackers to cause a denial of service (invalid write and daemon crash) by abruptly disconnecting during transmission of the map from the server, related to networ...

Exploit
  • EPSS 4.35%
  • Veröffentlicht 06.11.2010 00:00:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or possibly have unspecified othe...

Exploit
  • EPSS 3.24%
  • Veröffentlicht 06.11.2010 00:00:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service ...