Vulnerability index

Browse CVEs

245 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.5 CVE-2019-1010302 jhead 3.03 is affected by: Incorrect Access Control. The impact is: Denial of service. The component is: iptc.c Line 122 show_IPTC(). The attack vect… Fedora No fix yet Fix from $1,6002019-07-15 MEDIUM 5.5 CVE-2019-13286 In Xpdf 4.01.01, there is a heap-based buffer over-read in the function JBIG2Stream::readTextRegionSeg() located at JBIG2Stream.cc. It can, for examp… Fedora No fix yet Fix from $1,6002019-07-04 HIGH 7.8 CVE-2019-13281 In Xpdf 4.01.01, a heap-based buffer overflow could be triggered in DCTStream::decodeImage() in Stream.cc when writing to frameBuf memory. It can, fo… Fedora No fix yet Fix from $1,9502019-07-04 HIGH 7.8 CVE-2019-13282 In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in SampledFunction::transform in Function.cc when using a large index for samples. … Fedora No fix yet Fix from $1,9502019-07-04 HIGH 7.8 CVE-2019-13283 In Xpdf 4.01.01, a heap-based buffer over-read could be triggered in strncpy from FoFiType1::parse in fofi/FoFiType1.cc because it does not ensure th… Fedora No fix yet Fix from $1,9502019-07-04 HIGH 7.8 CVE-2019-12957 In Xpdf 4.01.01, a buffer over-read could be triggered in FoFiType1C::convertToType1 in fofi/FoFiType1C.cc when the index number is larger than the c… Fedora No fix yet Fix from $1,9502019-06-25 MEDIUM 5.6 CVE-2019-11091 Microarchitectural Data Sampling Uncacheable Memory (MDSUM): Uncacheable memory on some microprocessors utilizing speculative execution may allow an … Fedora Mitigation only Fix from $1,6002019-05-30 MEDIUM 5.9 CVE-2018-12130 Microarchitectural Fill Buffer Data Sampling (MFBDS): Fill buffers on some microprocessors utilizing speculative execution may allow an authenticated… Fedora No fix yet Fix from $1,6002019-05-30 MEDIUM 5.6 CVE-2018-12126 Microarchitectural Store Buffer Data Sampling (MSBDS): Store buffers on some microprocessors utilizing speculative execution may allow an authenticat… Fedora No fix yet Fix from $1,6002019-05-30 MEDIUM 5.6 CVE-2018-12127 Microarchitectural Load Port Data Sampling (MLPDS): Load ports on some microprocessors utilizing speculative execution may allow an authenticated use… Fedora No fix yet Fix from $1,6002019-05-30 MEDIUM 6.5 CVE-2019-12216 An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There… Fedora No fix yet Fix from $1,6002019-05-20 MEDIUM 6.5 CVE-2019-12221 An issue was discovered in libSDL2.a in Simple DirectMedia Layer (SDL) 2.0.9 when used in conjunction with libSDL2_image.a in SDL2_image 2.0.4. There… Fedora No fix yet Fix from $1,6002019-05-20 MEDIUM 6.5 CVE-2019-11026 FontInfoScanner::scanFonts in FontInfo.cc in Poppler 0.75.0 has infinite recursion, leading to a call to the error function in Error.cc. Fedora No fix yet Fix from $1,6002019-04-08 CRITICAL 9.8 CVE-2019-0160 Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service v… Fedora Mitigation only Fix from $2,3002019-03-27 MEDIUM 6.5 CVE-2019-9903 PDFDoc::markObject in PDFDoc.cc in Poppler 0.74.0 mishandles dict marking, leading to stack consumption in the function Dict::find() located at Dict.… Fedora No fix yet Fix from $1,6002019-03-21 MEDIUM 6.5 CVE-2019-9211 There is a reachable assertion abort in the function write_long_string_missing_values() in data/sys-file-writer.c in libdata.a in GNU PSPP 1.2.0 that… Fedora No fix yet Fix from $1,6002019-02-27 HIGH 7.8 CVE-2019-8376 An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_layer4_v6() located at get.c. This can be trigger… Fedora No fix yet Fix from $1,9502019-02-17 HIGH 7.8 CVE-2019-8377 An issue was discovered in Tcpreplay 4.3.1. A NULL pointer dereference occurred in the function get_ipv6_l4proto() located at get.c. This can be trig… Fedora No fix yet Fix from $1,9502019-02-17 HIGH 7.8 CVE-2019-8381 An issue was discovered in Tcpreplay 4.3.1. An invalid memory access occurs in do_checksum in checksum.c. It can be triggered by sending a crafted pc… Fedora No fix yet Fix from $1,9502019-02-17 HIGH 8.1 CVE-2019-7639 An issue was discovered in gsi-openssh-server 7.9p1 on Fedora 29. If PermitPAMUserChange is set to yes in the /etc/gsissh/sshd_config file, logins su… Fedora No fix yet Fix from $1,9502019-02-08 HIGH 7.5 CVE-2019-0001 Receipt of a malformed packet on MX Series devices with dynamic vlan configuration can trigger an uncontrolled recursion loop in the Broadband Edge s… Fedora Mitigation only Fix from $1,9502019-01-15 MEDIUM 5.5 CVE-2018-20592 In Mini-XML (aka mxml) v2.12, there is a use-after-free in the mxmlAdd function of the mxml-node.c file. Remote attackers could leverage this vulnera… Fedora No fix yet Fix from $1,6002018-12-30 MEDIUM 5.5 CVE-2018-20593 In Mini-XML (aka mxml) v2.12, there is stack-based buffer overflow in the scan_file function in mxmldoc.c. Fedora No fix yet Fix from $1,6002018-12-30 MEDIUM 5.5 CVE-2018-20005 An issue has been found in Mini-XML (aka mxml) 2.12. It is a use-after-free in mxmlWalkNext in mxml-search.c, as demonstrated by mxmldoc. Fedora No fix yet Fix from $1,6002018-12-10 CRITICAL 9.8 CVE-2018-17825 An issue was discovered in AdPlug 2.3.1. There are several double-free vulnerabilities in the CEmuopl class in emuopl.cpp because of a destructor's t… Fedora No fix yet Fix from $2,3002018-10-01 HIGH 7.5 CVE-2018-1111EPSS 98% DHCP packages in Red Hat Enterprise Linux 6 and 7, Fedora 28, and earlier are vulnerable to a command injection flaw in the NetworkManager integratio… Fedora No fix yet Fix from $1,9502018-05-17 MEDIUM 5.9 CVE-2011-0704 389 Directory Server 1.2.7.5, when built with mozldap, allows remote attackers to cause a denial of service (replica crash) by sending an empty modif… 389 Directory Server Mitigation only Fix from $1,6002018-05-04 HIGH 8.8 CVE-2018-3846 In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow over… Fedora No fix yet Fix from $1,9502018-04-16 HIGH 7.8 CVE-2018-5345 A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash or, potentially, execute arbit… Fedora Mitigation only Fix from $1,9502018-01-12 CRITICAL 9.8 CVE-2017-12170 Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was vulnerable to packaging error due to which the original configuration was ignored a… Fedora Mitigation only Fix from $2,3002017-09-21