Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2020-7238 Netty 4.1.43.Final allows HTTP Request Smuggling because it mishandles Transfer-Encoding whitespace (such as a [space]Transfer-Encoding:chunked line)… Fedora No fix yet Fix from $1,9502020-01-27 HIGH 8.8 CVE-2020-6860 libmysofa 0.9.1 has a stack-based buffer overflow in readDataVar in hdf/dataobject.c during the reading of a header message attribute. Fedora No fix yet Fix from $1,9502020-01-13 HIGH 7.8 CVE-2013-4161 gksu-polkit-0.0.3-6.fc18 was reported as fixing the issue in CVE-2012-5617 but the patch was improperly applied and it did not fixed the security iss… Fedora Mitigation only Fix from $1,9502019-12-31 MEDIUM 5.5 CVE-2019-20093 The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.6 allows remote attackers to cause a denial of service (NULL pointer deref… Fedora No fix yet Fix from $1,6002019-12-30 MEDIUM 5.5 CVE-2019-20051 A floating-point exception was discovered in PackLinuxElf::elf_hash in p_lx_elf.cpp in UPX 3.95. The vulnerability causes an application crash, which… Fedora No fix yet Fix from $1,6002019-12-27 MEDIUM 5.5 CVE-2019-20021 A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file. Fedora No fix yet Fix from $1,6002019-12-27 HIGH 7.8 CVE-2019-19917 Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c. Fedora No fix yet Fix from $1,9502019-12-20 HIGH 7.8 CVE-2019-19918 Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c. Fedora No fix yet Fix from $1,9502019-12-20 MEDIUM 5.5 CVE-2019-19797 read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds write. Fedora No fix yet Fix from $1,6002019-12-15 HIGH 7.8 CVE-2019-19785 ATasm 1.06 has a stack-based buffer overflow in the to_comma() function in asm.c via a crafted .m65 file. Fedora No fix yet Fix from $1,9502019-12-13 HIGH 7.8 CVE-2019-19786 ATasm 1.06 has a stack-based buffer overflow in the parse_expr() function in setparse.c via a crafted .m65 file. Fedora No fix yet Fix from $1,9502019-12-13 HIGH 7.8 CVE-2019-19787 ATasm 1.06 has a stack-based buffer overflow in the get_signed_expression() function in setparse.c via a crafted .m65 file. Fedora No fix yet Fix from $1,9502019-12-13 MEDIUM 5.5 CVE-2019-19746 make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer overflow via a large arrow typ… Fedora No fix yet Fix from $1,6002019-12-12 HIGH 7.8 CVE-2019-19648 In the macho_parse_file functionality in macho/macho.c of YARA 3.11.0, command_size may be inconsistent with the real size. A specially crafted MachO… Fedora No fix yet Fix from $1,9502019-12-09 HIGH 7.8 CVE-2012-5617 gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation Fedora Mitigation only Fix from $1,9502019-11-25 HIGH 7.5 CVE-2012-5535 gnome-system-log polkit policy allows arbitrary files on the system to be read Fedora No fix yet Fix from $1,9502019-11-25 MEDIUM 6.3 CVE-2012-5630 libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees. Fedora Mitigation only Fix from $1,6002019-11-25 MEDIUM 5.5 CVE-2010-4178 MySQL-GUI-tools (mysql-administrator) leaks passwords into process list after with launch of mysql text console Fedora Mitigation only Fix from $1,6002019-11-06 MEDIUM 6.5 CVE-2019-9433 In libvpx, there is a possible information disclosure due to improper input validation. This could lead to remote information disclosure with no addi… Fedora Mitigation only Fix from $1,6002019-09-27 MEDIUM 6.5 CVE-2019-9371 In libvpx, there is a possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional e… Fedora Mitigation only Fix from $1,6002019-09-27 MEDIUM 6.5 CVE-2019-16707 Hunspell 1.7.0 has an invalid read operation in SuggestMgr::leftcommonsubstring in suggestmgr.cxx. Fedora No fix yet Fix from $1,6002019-09-23 HIGH 8.8 CVE-2019-2126EPSS 6% In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote co… Fedora Mitigation only Fix from $1,9502019-08-20 HIGH 8.8 CVE-2019-14732 AdPlug 2.3.1 has multiple heap-based buffer overflows in Ca2mLoader::load() in a2m.cpp. Fedora No fix yet Fix from $1,9502019-08-07 HIGH 8.8 CVE-2019-14733 AdPlug 2.3.1 has multiple heap-based buffer overflows in CradLoader::load() in rad.cpp. Fedora No fix yet Fix from $1,9502019-08-07 HIGH 8.8 CVE-2019-14734 AdPlug 2.3.1 has multiple heap-based buffer overflows in CmtkLoader::load() in mtk.cpp. Fedora No fix yet Fix from $1,9502019-08-07 HIGH 8.8 CVE-2019-14690 AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp. Fedora No fix yet Fix from $1,9502019-08-06 HIGH 8.8 CVE-2019-14691 AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp. Fedora No fix yet Fix from $1,9502019-08-06 HIGH 8.8 CVE-2019-14692 AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp. Fedora No fix yet Fix from $1,9502019-08-06 CRITICAL 9.8 CVE-2019-14532 An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using … Fedora No fix yet Fix from $2,3002019-08-02 HIGH 7.8 CVE-2019-14267EPSS 7% PDFResurrect 0.15 has a buffer overflow via a crafted PDF file because data associated with startxref and %%EOF is mishandled. Fedora No fix yet Fix from $1,9502019-07-29