Fedoraproject

Fedora

5319 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.35%
  • Veröffentlicht 09.11.2022 22:15:14
  • Zuletzt bearbeitet 02.01.2025 22:15:10

Windows Kerberos Elevation of Privilege Vulnerability

  • EPSS 1.08%
  • Veröffentlicht 09.11.2022 22:15:13
  • Zuletzt bearbeitet 02.01.2025 22:15:09

Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability

  • EPSS 0.03%
  • Veröffentlicht 09.11.2022 21:15:13
  • Zuletzt bearbeitet 21.11.2024 06:49:19

IBPB may not prevent return branch predictions from being specified by pre-IBPB branch targets leading to a potential information disclosure.

  • EPSS 0.89%
  • Veröffentlicht 09.11.2022 07:15:10
  • Zuletzt bearbeitet 01.05.2025 15:15:58

In Xfce xfce4-settings before 4.16.4 and 4.17.x before 4.17.1, there is an argument injection vulnerability in xfce4-mime-helper.

Exploit
  • EPSS 0.08%
  • Veröffentlicht 09.11.2022 07:15:09
  • Zuletzt bearbeitet 01.05.2025 15:15:58

An issue was discovered in Python before 3.11.1. An unnecessary quadratic algorithm exists in one path when processing some inputs to the IDNA (RFC 3490) decoder, such that a crafted, unreasonably long name being presented to the decoder could lead t...

  • EPSS 0.5%
  • Veröffentlicht 09.11.2022 06:15:09
  • Zuletzt bearbeitet 01.05.2025 15:15:57

An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be performed on Varnish Cache servers by requesting that certain headers are made hop-by-hop, preventing the Varnish Cache servers from f...

  • EPSS 0.76%
  • Veröffentlicht 09.11.2022 06:15:09
  • Zuletzt bearbeitet 01.05.2025 15:15:58

An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1. An attacker may introduce characters through HTTP/2 pseudo-headers that are invalid in the context of an HTTP/1 request...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 08.11.2022 22:15:16
  • Zuletzt bearbeitet 02.05.2025 18:15:24

An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.

Exploit
  • EPSS 1.63%
  • Veröffentlicht 08.11.2022 20:15:11
  • Zuletzt bearbeitet 21.11.2024 07:18:10

sysstat is a set of system performance tools for the Linux operating system. On 32 bit systems, in versions 9.1.16 and newer but prior to 12.7.1, allocate_structures contains a size_t overflow in sa_common.c. The allocate_structures function insuffic...

  • EPSS 4.03%
  • Veröffentlicht 07.11.2022 13:15:10
  • Zuletzt bearbeitet 21.11.2024 07:25:35

Apache Commons BCEL has a number of APIs that would normally only allow changing specific class characteristics. However, due to an out-of-bounds writing issue, these APIs can be used to produce arbitrary bytecode. This could be abused in application...