Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fedora CRITICAL 9.8
CVE-2020-28636

A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2…

Mitigation only
Fix from $2,300 2021-03-04
Fedora CRITICAL 9.8
CVE-2020-35628

A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2…

Mitigation only
Fix from $2,300 2021-03-04
Fedora CRITICAL 9.8
CVE-2020-28601

A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_2/…

Mitigation only
Fix from $2,300 2021-03-04
Fedora MEDIUM 6.5
CVE-2020-28591

An out-of-bounds read vulnerability exists in the AMF File AMFParserContext::endElement() functionality of Slic3r libslic3r 1.3.0 and Master Commit 9…

No fix yet
Fix from $1,600 2021-03-03
Fedora MEDIUM 5.5
CVE-2021-3407EPSS 50%

A flaw was found in mupdf 1.18.0. Double free of object during linearization may lead to memory corruption and other potential consequences.

Mitigation only
Fix from $1,600 2021-02-23
Fedora MEDIUM 6.5
CVE-2020-28463

All versions of package reportlab are vulnerable to Server-side Request Forgery (SSRF) via img tags. In order to reduce risk, use trustedSchemes & tr…

No fix yet
Fix from $1,600 2021-02-18
Fedora HIGH 7.5
CVE-2020-13578

A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead …

No fix yet
Fix from $1,950 2021-02-10
Fedora CRITICAL 9.8
CVE-2020-13576EPSS 6%

A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead t…

No fix yet
Fix from $2,300 2021-02-10
Fedora HIGH 7.5
CVE-2020-13574

A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead …

No fix yet
Fix from $1,950 2021-02-10
Fedora HIGH 7.5
CVE-2020-13575

A denial-of-service vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lea…

No fix yet
Fix from $1,950 2021-02-10
Fedora HIGH 7.5
CVE-2020-13577

A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead …

No fix yet
Fix from $1,950 2021-02-10
Fedora MEDIUM 5.5
CVE-2021-3272

jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number …

No fix yet
Fix from $1,600 2021-01-27
Fedora HIGH 7.5
CVE-2020-35376

Xpdf 4.02 allows stack consumption because of an incorrect subroutine reference in a Type 1C font charstring, related to the FoFiType1C::getOp() func…

No fix yet
Fix from $1,950 2020-12-26
Fedora MEDIUM 5.5
CVE-2020-16592

A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm…

No fix yet
Fix from $1,600 2020-12-09
Fedora HIGH 8.8
CVE-2020-13584

An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.1 x64. A specially crafted HTML web page can cause a use-after-f…

No fix yet
Fix from $1,950 2020-12-03
Fedora MEDIUM 5.5
CVE-2020-25725

In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes a…

No fix yet
Fix from $1,600 2020-11-21
Fedora MEDIUM 5.5
CVE-2020-8695

Observable discrepancy in the RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure vi…

Mitigation only
Fix from $1,600 2020-11-12
Fedora MEDIUM 5.5
CVE-2020-8696

Improper removal of sensitive information before storage or transfer in some Intel(R) Processors may allow an authenticated user to potentially enabl…

Mitigation only
Fix from $1,600 2020-11-12
Fedora HIGH 7.5
CVE-2020-17487

radare2 4.5.0 misparses signature information in PE files, causing a segmentation fault in r_x509_parse_algorithmidentifier in libr/util/x509.c. This…

No fix yet
Fix from $1,950 2020-08-11
Fedora HIGH 7.8
CVE-2020-6070

An exploitable code execution vulnerability exists in the file system checking functionality of fsck.f2fs 1.12.0. A specially crafted f2fs file can c…

No fix yet
Fix from $1,950 2020-08-10
Fedora HIGH 7.8
CVE-2020-15395

In MediaInfoLib in MediaArea MediaInfo 20.03, there is a stack-based buffer over-read in Streams_Fill_PerStream in Multiple/File_MpegPs.cpp (aka an o…

No fix yet
Fix from $1,950 2020-06-30
Fedora HIGH 7.2
CVE-2020-14295EPSS 86%

A SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead to remote command execution …

No fix yet
Fix from $1,950 2020-06-17
Fedora HIGH 7.0
CVE-2020-12050

SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privilege escalation because any use…

Mitigation only
Fix from $1,950 2020-04-30
Fedora HIGH 7.8
CVE-2020-0081

In finalize of AssetManager.java, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no …

Mitigation only
Fix from $1,950 2020-04-17
Fedora HIGH 7.5
CVE-2020-6582

Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a …

No fix yet
Fix from $1,950 2020-03-16
Fedora HIGH 7.3
CVE-2020-6581

Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \…

No fix yet
Fix from $1,950 2020-03-16
Fedora HIGH 8.8
CVE-2020-8813EPSS 74%

graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has …

No fix yet
Fix from $1,950 2020-02-22
Fedora CRITICAL 9.8
CVE-2020-6061EPSS 5%

An exploitable heap out-of-bounds read vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST …

No fix yet
Fix from $2,300 2020-02-19
Fedora CRITICAL 9.8
CVE-2020-8518EPSS 72%

Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution.

No fix yet
Fix from $2,300 2020-02-17
Fedora HIGH 7.5
CVE-2011-4088

ABRT might allow attackers to obtain sensitive information from crash reports.

Mitigation only
Fix from $1,950 2020-01-31