Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Fedora MEDIUM 5.5
CVE-2019-1010302

jhead 3.03 is affected by: Incorrect Access Control. The impact is: Denial of service. The component is: iptc.c Line 122 show_IPTC(). The attack vect…

No fix yet
Fix from $1,600 2019-07-15
Fedora MEDIUM 5.5
CVE-2019-13286

In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG2Stream.cc. It can, for examp…

No fix yet
Fix from $1,600 2019-07-04
Fedora HIGH 7.8
CVE-2019-13281

In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing to frameBuf memory. It can, fo…

No fix yet
Fix from $1,950 2019-07-04
Fedora HIGH 7.8
CVE-2019-13282

In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in SampledFunction::transform in Function.cc when using a large index for samples. …

No fix yet
Fix from $1,950 2019-07-04
Fedora HIGH 7.8
CVE-2019-13283

In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in strncpy from FoFiType1::parse in fofi/FoFiType1.cc because it does not ensure th…

No fix yet
Fix from $1,950 2019-07-04
Fedora HIGH 7.8
CVE-2019-12957

In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the c…

No fix yet
Fix from $1,950 2019-06-25
Fedora MEDIUM 5.6
CVE-2019-11091

Microarchitectural Data Sampling Uncacheable Memory (MDSUM): Uncacheable memory on some microprocessors utilizing speculative execution may allow an …

Mitigation only
Fix from $1,600 2019-05-30
Fedora MEDIUM 5.9
CVE-2018-12130

Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated…

No fix yet
Fix from $1,600 2019-05-30
Fedora MEDIUM 5.6
CVE-2018-12126

Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticat…

No fix yet
Fix from $1,600 2019-05-30
Fedora MEDIUM 5.6
CVE-2018-12127

Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution may allow an authenticated use…

No fix yet
Fix from $1,600 2019-05-30
Fedora MEDIUM 6.5
CVE-2019-12216

An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There…

No fix yet
Fix from $1,600 2019-05-20
Fedora MEDIUM 6.5
CVE-2019-12221

An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There…

No fix yet
Fix from $1,600 2019-05-20
Fedora MEDIUM 6.5
CVE-2019-11026

FontInfoScanner::scanFonts in FontInfo.cc in Poppler 0.75.0 has infinite recursion, leading to a call to the error function in Error.cc.

No fix yet
Fix from $1,600 2019-04-08
Fedora CRITICAL 9.8
CVE-2019-0160

Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service v…

Mitigation only
Fix from $2,300 2019-03-27
Fedora MEDIUM 6.5
CVE-2019-9903

PDFDoc::markObject in PDFDoc.cc in Poppler 0.74.0 mishandles dict marking, leading to stack consumption in the function Dict::find() located at Dict.…

No fix yet
Fix from $1,600 2019-03-21
Fedora MEDIUM 6.5
CVE-2019-9211

There is a reachable assertion abort in the function write_long_string_missing_values() in data/sys-file-writer.c in libdata.a in GNU PSPP 1.2.0 that…

No fix yet
Fix from $1,600 2019-02-27
Fedora HIGH 7.8
CVE-2019-8376

An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be trigger…

No fix yet
Fix from $1,950 2019-02-17
Fedora HIGH 7.8
CVE-2019-8377

An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_ipv6_l4proto() located at get.c. This can be trig…

No fix yet
Fix from $1,950 2019-02-17
Fedora HIGH 7.8
CVE-2019-8381

An issue was discovered in Tcpreplay 4.3.1. An invalid memory access occurs in do_checksum in checksum.c. It can be triggered by sending a crafted pc…

No fix yet
Fix from $1,950 2019-02-17
Fedora HIGH 8.1
CVE-2019-7639

An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins su…

No fix yet
Fix from $1,950 2019-02-08
Fedora HIGH 7.5
CVE-2019-0001

Receipt of a malformed packet on MX Series devices with dynamic vlan configuration can trigger an uncontrolled recursion loop in the Broadband Edge s…

Mitigation only
Fix from $1,950 2019-01-15
Fedora MEDIUM 5.5
CVE-2018-20592

In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd function of the mxml-node.c file. Remote attackers could leverage this vulnera…

No fix yet
Fix from $1,600 2018-12-30
Fedora MEDIUM 5.5
CVE-2018-20593

In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxmldoc.c.

No fix yet
Fix from $1,600 2018-12-30
Fedora MEDIUM 5.5
CVE-2018-20005

An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after-free in mxmlWalkNext in mxml-search.c, as demonstrated by mxmldoc.

No fix yet
Fix from $1,600 2018-12-10
Fedora CRITICAL 9.8
CVE-2018-17825

An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's t…

No fix yet
Fix from $2,300 2018-10-01
Fedora HIGH 7.5
CVE-2018-1111EPSS 98%

DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integratio…

No fix yet
Fix from $1,950 2018-05-17
389 Directory Server MEDIUM 5.9
CVE-2011-0704

389 Directory Server 1.2.7.5, when built with mozldap, allows remote attackers to cause a denial of service (replica crash) by sending an empty modif…

Mitigation only
Fix from $1,600 2018-05-04
Fedora HIGH 8.8
CVE-2018-3846

In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow over…

No fix yet
Fix from $1,950 2018-04-16
Fedora HIGH 7.8
CVE-2018-5345

A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash or, potentially, execute arbit…

Mitigation only
Fix from $1,950 2018-01-12
Fedora CRITICAL 9.8
CVE-2017-12170

Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to packaging error due to which the original configuration was ignored a…

Mitigation only
Fix from $2,300 2017-09-21