Fedoraproject

Fedora

5335 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.34%
  • Veröffentlicht 30.03.2023 05:15:07
  • Zuletzt bearbeitet 20.11.2025 17:53:57

Versions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy() utility function due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a larg...

Exploit
  • EPSS 0.39%
  • Veröffentlicht 30.03.2023 05:15:07
  • Zuletzt bearbeitet 20.11.2025 17:53:57

Versions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-cra...

Exploit
  • EPSS 0.59%
  • Veröffentlicht 30.03.2023 05:15:07
  • Zuletzt bearbeitet 20.11.2025 17:53:57

Versions of the package angular from 1.4.9 are vulnerable to Regular Expression Denial of Service (ReDoS) via the <input type="url"> element due to the usage of an insecure regular expression in the input[url] functionality. Exploiting this vulnerabi...

  • EPSS 0.02%
  • Veröffentlicht 29.03.2023 20:15:07
  • Zuletzt bearbeitet 18.02.2025 20:15:16

A flaw was found in the QEMU Guest Agent service for Windows. A local unprivileged user may be able to manipulate the QEMU Guest Agent's Windows installer via repair custom actions to elevate their privileges on the system.

  • EPSS 0.57%
  • Veröffentlicht 28.03.2023 21:15:11
  • Zuletzt bearbeitet 03.11.2025 22:16:06

Smarty is a template engine for PHP. In affected versions smarty did not properly escape javascript code. An attacker could exploit this vulnerability to execute arbitrary JavaScript code in the context of the user's browser session. This may lead to...

Exploit
  • EPSS 0.33%
  • Veröffentlicht 27.03.2023 22:15:20
  • Zuletzt bearbeitet 21.11.2024 07:36:41

A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execut...

  • EPSS 0.58%
  • Veröffentlicht 27.03.2023 21:15:10
  • Zuletzt bearbeitet 24.02.2025 18:15:16

A vulnerability was found in X.Org. This issue occurs due to a dangling pointer in DeepCopyPointerClasses that can be exploited by ProcXkbSetDeviceInfo() and ProcXkbGetDeviceInfo() to read and write into freed memory. This can lead to local privilege...

  • EPSS 0.02%
  • Veröffentlicht 27.03.2023 21:15:10
  • Zuletzt bearbeitet 23.04.2025 17:16:24

A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem in how a user inserts a malicious USB device. This flaw allows a local user to crash or potentially escalate their privileges on the system.

  • EPSS 0.01%
  • Veröffentlicht 27.03.2023 21:15:09
  • Zuletzt bearbeitet 24.02.2025 20:15:31

A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local account can leak kernel stack information when issuing commands to the /dev/infiniband/rdma_cm device node. While this access is unlike...

  • EPSS 0.16%
  • Veröffentlicht 24.03.2023 04:15:55
  • Zuletzt bearbeitet 19.02.2025 22:15:16

Dino before 0.2.3, 0.3.x before 0.3.2, and 0.4.x before 0.4.2 allows attackers to modify the personal bookmark store via a crafted message. The attacker can change the display of group chats or force a victim to join a group chat; the victim may then...