Fedoraproject

Fedora

5353 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.74%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:57

Use after free in Vulkan in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.32%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:57

Out of bounds read in Accessibility in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)

  • EPSS 0.93%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:58

Heap buffer overflow in Browser History in Google Chrome prior to 112.0.5615.49 allowed a remote attacker who convinced a user to engage in specific UI interaction to potentially exploit heap corruption via a crafted HTML page. (Chromium security sev...

  • EPSS 0.41%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:58

Inappropriate implementation in WebShare in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to potentially hide the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.69%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:58

Incorrect security UI in Navigation in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.07%
  • Veröffentlicht 04.04.2023 22:15:07
  • Zuletzt bearbeitet 21.11.2024 07:39:58

Inappropriate implementation in FedCM in Google Chrome prior to 112.0.5615.49 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Low)

  • EPSS 0.04%
  • Veröffentlicht 03.04.2023 22:15:07
  • Zuletzt bearbeitet 18.02.2025 17:15:16

libyang from v2.0.164 to v2.1.30 was discovered to contain a NULL pointer dereference via the function lys_parse_mem at lys_parse_mem.c.

  • EPSS 0.01%
  • Veröffentlicht 03.04.2023 22:15:06
  • Zuletzt bearbeitet 13.02.2025 15:15:13

A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash the system and possibly cause a kernel information lea

Exploit
  • EPSS 0.26%
  • Veröffentlicht 03.04.2023 16:15:07
  • Zuletzt bearbeitet 21.11.2024 07:13:00

A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open packets and send them to BGP peers running frr-bgpd, resulting in DoS.

  • EPSS 0.25%
  • Veröffentlicht 31.03.2023 19:15:07
  • Zuletzt bearbeitet 18.02.2025 16:15:16

An issue was discovered in MediaWiki before 1.35.10, 1.36.x through 1.38.x before 1.38.6, and 1.39.x before 1.39.3. An auto-block can occur for an untrusted X-Forwarded-For header.