Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2020-28636 A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2… Fedora Mitigation only Fix from $2,3002021-03-04 CRITICAL 9.8 CVE-2020-35628 A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_S2… Fedora Mitigation only Fix from $2,3002021-03-04 CRITICAL 9.8 CVE-2020-28601 A code execution vulnerability exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. An oob read vulnerability exists in Nef_2/… Fedora Mitigation only Fix from $2,3002021-03-04 MEDIUM 6.5 CVE-2020-28591 An out-of-bounds read vulnerability exists in the AMF File AMFParserContext::endElement() functionality of Slic3r libslic3r 1.3.0 and Master Commit 9… Fedora No fix yet Fix from $1,6002021-03-03 MEDIUM 5.5 CVE-2021-3407EPSS 50% A flaw was found in mupdf 1.18.0. Double free of object during linearization may lead to memory corruption and other potential consequences. Fedora Mitigation only Fix from $1,6002021-02-23 MEDIUM 6.5 CVE-2020-28463 All versions of package reportlab are vulnerable to Server-side Request Forgery (SSRF) via img tags. In order to reduce risk, use trustedSchemes & tr… Fedora No fix yet Fix from $1,6002021-02-18 HIGH 7.5 CVE-2020-13578 A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead … Fedora No fix yet Fix from $1,9502021-02-10 CRITICAL 9.8 CVE-2020-13576EPSS 6% A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead t… Fedora No fix yet Fix from $2,3002021-02-10 HIGH 7.5 CVE-2020-13574 A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead … Fedora No fix yet Fix from $1,9502021-02-10 HIGH 7.5 CVE-2020-13575 A denial-of-service vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lea… Fedora No fix yet Fix from $1,9502021-02-10 HIGH 7.5 CVE-2020-13577 A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead … Fedora No fix yet Fix from $1,9502021-02-10 MEDIUM 5.5 CVE-2021-3272 jp2_decode in jp2/jp2_dec.c in libjasper in JasPer 2.0.24 has a heap-based buffer over-read when there is an invalid relationship between the number … Fedora No fix yet Fix from $1,6002021-01-27 HIGH 7.5 CVE-2020-35376 Xpdf 4.02 allows stack consumption because of an incorrect subroutine reference in a Type 1C font charstring, related to the FoFiType1C::getOp() func… Fedora No fix yet Fix from $1,9502020-12-26 MEDIUM 5.5 CVE-2020-16592 A use after free issue exists in the Binary File Descriptor (BFD) library (aka libbfd) in GNU Binutils 2.34 in bfd_hash_lookup, as demonstrated in nm… Fedora No fix yet Fix from $1,6002020-12-09 HIGH 8.8 CVE-2020-13584 An exploitable use-after-free vulnerability exists in WebKitGTK browser version 2.30.1 x64. A specially crafted HTML web page can cause a use-after-f… Fedora No fix yet Fix from $1,9502020-12-03 MEDIUM 5.5 CVE-2020-25725 In Xpdf 4.02, SplashOutputDev::endType3Char(GfxState *state) SplashOutputDev.cc:3079 is trying to use the freed `t3GlyphStack->cache`, which causes a… Fedora No fix yet Fix from $1,6002020-11-21 MEDIUM 5.5 CVE-2020-8695 Observable discrepancy in the RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure vi… Fedora Mitigation only Fix from $1,6002020-11-12 MEDIUM 5.5 CVE-2020-8696 Improper removal of sensitive information before storage or transfer in some Intel(R) Processors may allow an authenticated user to potentially enabl… Fedora Mitigation only Fix from $1,6002020-11-12 HIGH 7.5 CVE-2020-17487 radare2 4.5.0 misparses signature information in PE files, causing a segmentation fault in r_x509_parse_algorithmidentifier in libr/util/x509.c. This… Fedora No fix yet Fix from $1,9502020-08-11 HIGH 7.8 CVE-2020-6070 An exploitable code execution vulnerability exists in the file system checking functionality of fsck.f2fs 1.12.0. A specially crafted f2fs file can c… Fedora No fix yet Fix from $1,9502020-08-10 HIGH 7.8 CVE-2020-15395 In MediaInfoLib in MediaArea MediaInfo 20.03, there is a stack-based buffer over-read in Streams_Fill_PerStream in Multiple/File_MpegPs.cpp (aka an o… Fedora No fix yet Fix from $1,9502020-06-30 HIGH 7.2 CVE-2020-14295EPSS 86% A SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead to remote command execution … Fedora No fix yet Fix from $1,9502020-06-17 HIGH 7.0 CVE-2020-12050 SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privilege escalation because any use… Fedora Mitigation only Fix from $1,9502020-04-30 HIGH 7.8 CVE-2020-0081 In finalize of AssetManager.java, there is possible memory corruption due to a double free. This could lead to local escalation of privilege with no … Fedora Mitigation only Fix from $1,9502020-04-17 HIGH 7.5 CVE-2020-6582 Nagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a … Fedora No fix yet Fix from $1,9502020-03-16 HIGH 7.3 CVE-2020-6581 Nagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \… Fedora No fix yet Fix from $1,9502020-03-16 HIGH 8.8 CVE-2020-8813EPSS 74% graph_realtime.php in Cacti 1.2.8 allows remote attackers to execute arbitrary OS commands via shell metacharacters in a cookie, if a guest user has … Fedora No fix yet Fix from $1,9502020-02-22 CRITICAL 9.8 CVE-2020-6061EPSS 5% An exploitable heap out-of-bounds read vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST … Fedora No fix yet Fix from $2,3002020-02-19 CRITICAL 9.8 CVE-2020-8518EPSS 72% Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution. Fedora No fix yet Fix from $2,3002020-02-17 HIGH 7.5 CVE-2011-4088 ABRT might allow attackers to obtain sensitive information from crash reports. Fedora Mitigation only Fix from $1,9502020-01-31