Fedoraproject

Fedora

5335 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.12%
  • Veröffentlicht 17.07.2023 21:15:09
  • Zuletzt bearbeitet 21.11.2024 08:13:29

iperf3 before 3.14 allows peers to cause an integer overflow and heap corruption via a crafted length field.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 14.07.2023 18:15:11
  • Zuletzt bearbeitet 21.11.2024 08:13:11

An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.

Exploit
  • EPSS 0.02%
  • Veröffentlicht 14.07.2023 18:15:10
  • Zuletzt bearbeitet 08.02.2025 04:15:08

An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.

  • EPSS 37.95%
  • Veröffentlicht 13.07.2023 15:15:08
  • Zuletzt bearbeitet 21.11.2024 06:51:12

Redis is an in-memory database that persists on disk. A specially crafted Lua script executing in Redis can trigger a heap overflow in the cjson library, and result with heap corruption and potentially remote code execution. The problem exists in all...

  • EPSS 0.01%
  • Veröffentlicht 12.07.2023 09:15:14
  • Zuletzt bearbeitet 21.11.2024 08:16:28

A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of...

  • EPSS 0.22%
  • Veröffentlicht 11.07.2023 18:15:15
  • Zuletzt bearbeitet 01.01.2025 02:15:49

ASP.NET and Visual Studio Security Feature Bypass Vulnerability

  • EPSS 90.84%
  • Veröffentlicht 11.07.2023 17:15:13
  • Zuletzt bearbeitet 10.04.2025 20:54:22

Redis is an in-memory database that persists on disk. In Redit 7.0 prior to 7.0.12, extracting key names from a command and a list of arguments may, in some cases, trigger a heap overflow and result in reading random heap memory, heap corruption and ...

  • EPSS 0.07%
  • Veröffentlicht 11.07.2023 17:15:13
  • Zuletzt bearbeitet 21.11.2024 08:17:05

A flaw was found in the QEMU built-in VNC server. When a client connects to the VNC server, QEMU checks whether the current number of connections crosses a certain threshold and if so, cleans up the previous connection. If the previous connection hap...

  • EPSS 0.22%
  • Veröffentlicht 11.07.2023 12:15:10
  • Zuletzt bearbeitet 21.11.2024 08:16:52

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to exec...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 11.07.2023 12:15:09
  • Zuletzt bearbeitet 21.11.2024 07:39:39

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.