Fedoraproject

Fedora

5365 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.3%
  • Veröffentlicht 31.08.2023 21:15:07
  • Zuletzt bearbeitet 03.11.2025 21:15:58

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an invalid offset validation leading to Out Of Bound Write. This can be triggered when the values `rect->left` ...

Exploit
  • EPSS 1.39%
  • Veröffentlicht 31.08.2023 20:15:08
  • Zuletzt bearbeitet 03.11.2025 21:15:58

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. This issue affects Clients only. Integer underflow leading to DOS (e.g. abort due to `WINPR_ASSERT` with default compilation flags). When an ins...

Exploit
  • EPSS 1.32%
  • Veröffentlicht 31.08.2023 20:15:08
  • Zuletzt bearbeitet 03.11.2025 21:15:58

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions of FreeRDP are subject to a Null Pointer Dereference leading a crash in the RemoteFX (rfx) handling. Inside the `rfx_process_...

Exploit
  • EPSS 1.33%
  • Veröffentlicht 31.08.2023 20:15:08
  • Zuletzt bearbeitet 03.11.2025 21:15:58

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. Affected versions are subject to an Out-Of-Bounds Read in the `nsc_rle_decompress_data` function. The Out-Of-Bounds Read occurs because it proce...

Exploit
  • EPSS 1.2%
  • Veröffentlicht 31.08.2023 19:15:11
  • Zuletzt bearbeitet 03.11.2025 21:16:01

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions there is a Global-Buffer-Overflow in the ncrush_decompress function. Feeding crafted input into this function can trigger t...

  • EPSS 1.19%
  • Veröffentlicht 31.08.2023 10:15:08
  • Zuletzt bearbeitet 08.10.2026 22:17:22

A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html  in a target virtual machine may be able to elevate their privileges if ...

  • EPSS 0.94%
  • Veröffentlicht 29.08.2023 20:15:10
  • Zuletzt bearbeitet 21.11.2024 08:35:27

Use after free in MediaStream in Google Chrome prior to 116.0.5845.140 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Exploit
  • EPSS 1.44%
  • Veröffentlicht 29.08.2023 16:15:09
  • Zuletzt bearbeitet 21.11.2024 08:14:13

FRRouting FRR 7.5.1 through 9.0 and Pica8 PICOS 4.3.3.2 allow a remote attacker to cause a denial of service via a crafted BGP update with a corrupted attribute 23 (Tunnel Encapsulation).

  • EPSS 1.06%
  • Veröffentlicht 29.08.2023 04:15:16
  • Zuletzt bearbeitet 21.11.2024 08:21:08

An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c processes NLRIs if the attribute length is zero.

  • EPSS 0.96%
  • Veröffentlicht 29.08.2023 04:15:16
  • Zuletzt bearbeitet 21.11.2024 08:21:08

An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no check for the availability of two bytes during AIGP validation.