Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora HIGH 7.8
CVE-2022-31214

A Privilege Context Switching issue was discovered in join.c in Firejail 0.9.68. By crafting a bogus Firejail container that is accepted by the Firej…

Patch available
Fix from $1,950 2022-06-09
Fedora CRITICAL 9.1
CVE-2022-1996

Authorization Bypass Through User-Controlled Key in GitHub repository emicklei/go-restful prior to v3.8.0.

Fix: 2.16.0 / 3.8.0+
Fix from $2,300 2022-06-08
Fedora CRITICAL 9.8
CVE-2022-24065

The package cookiecutter before 2.1.1 are vulnerable to Command Injection via hg argument injection. When calling the cookiecutter function from Pyth…

Fix: 2.1.1+
Fix from $2,300 2022-06-08
Fedora MEDIUM 5.5
CVE-2022-31783

Liblouis 3.21.0 has an out-of-bounds write in compileRule in compileTranslationTable.c, as demonstrated by lou_trace.

Patch available
Fix from $1,600 2022-06-02
Fedora HIGH 7.8
CVE-2022-1942

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5043 / 13.0+
Fix from $1,950 2022-05-31
Fedora HIGH 7.8
CVE-2022-1927

Buffer Over-read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5037 / 13.0+
Fix from $1,950 2022-05-29
Fedora HIGH 7.8
CVE-2022-1897

Out-of-bounds Write in GitHub repository vim/vim prior to 8.2.

Fix: 8.0.5023 / 13.0+
Fix from $1,950 2022-05-27
Fedora HIGH 7.8
CVE-2022-1898

Use After Free in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5024 / 13.0+
Fix from $1,950 2022-05-27
Fedora MEDIUM 6.5
CVE-2022-22662

A cookie management issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.…

Fix: 10.15.7 / 11.6.5+
Fix from $1,600 2022-05-26
Fedora HIGH 7.8
CVE-2022-30788

A crafted NTFS image can cause a heap-based buffer overflow in ntfs_mft_rec_alloc in NTFS-3G through 2021.8.22.

Fix: after 2021.8.22
Fix from $1,950 2022-05-26
Fedora MEDIUM 6.7
CVE-2022-30787

An integer underflow in fuse_lib_readdir enables arbitrary memory read operations in NTFS-3G through 2021.8.22 when using libfuse-lite.

Fix: after 2021.8.22
Fix from $1,600 2022-05-26
Fedora HIGH 7.8
CVE-2022-30786

A crafted NTFS image can cause a heap-based buffer overflow in ntfs_names_full_collate in NTFS-3G through 2021.8.22.

Fix: after 2021.8.22
Fix from $1,950 2022-05-26
Fedora MEDIUM 6.7
CVE-2022-30783

An invalid return code in fuse_kern_mount enables intercepting of libfuse-lite protocol traffic between NTFS-3G and the kernel in NTFS-3G through 202…

Fix: after 2021.8.22
Fix from $1,600 2022-05-26
Fedora MEDIUM 6.7
CVE-2022-30785

A file handle created in fuse_lib_opendir, and later used in fuse_lib_readdir, enables arbitrary memory read and write operations in NTFS-3G through …

Fix: after 2021.8.22
Fix from $1,600 2022-05-26
Fedora HIGH 7.8
CVE-2022-1886

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5016+
Fix from $1,950 2022-05-26
Fedora MEDIUM 6.5
CVE-2022-1348

A vulnerability was found in logrotate in how the state file is created. The state file is used to prevent parallel executions of multiple instances …

Fix: 3.20.0+
Fix from $1,600 2022-05-25
Fedora HIGH 7.8
CVE-2022-1851

Out-of-bounds Read in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.5013 / 13.0+
Fix from $1,950 2022-05-25
Fedora HIGH 7.8
CVE-2021-42612

A use after free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have other unspecified impac…

No fix yet
Fix from $1,950 2022-05-24
Fedora HIGH 7.8
CVE-2021-42613

A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of service or possibly have other unspecified impact vi…

No fix yet
Fix from $1,950 2022-05-24
Fedora HIGH 7.8
CVE-2021-42614

A use after free in info_width_internal in bk_info.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have unspecified oth…

No fix yet
Fix from $1,950 2022-05-24
Fedora HIGH 7.5
CVE-2022-29217

PyJWT is a Python implementation of RFC 7519. PyJWT supports multiple different JWT signing algorithms. With JWT, an attacker submitting the JWT toke…

Fix: 2.4.0+
Fix from $1,950 2022-05-24
Fedora HIGH 7.8
CVE-2022-29162

runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. A bug was found in runc prior to version 1.1.2 wh…

Fix: 1.1.2+
Fix from $1,950 2022-05-17
Fedora HIGH 7.8
CVE-2022-1733

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4968.

Fix: 8.2.4968 / 13.0+
Fix from $1,950 2022-05-17
Fedora HIGH 7.8
CVE-2022-1769

Buffer Over-read in GitHub repository vim/vim prior to 8.2.4974.

Fix: 8.2.4974 / 13.0+
Fix from $1,950 2022-05-17
Fedora CRITICAL 9.1
CVE-2022-1586

An out-of-bounds read vulnerability was discovered in the PCRE2 library in the compile_xclass_matchingpath() function of the pcre2_jit_compile.c file…

Fix: 10.40+
Fix from $2,300 2022-05-16
Fedora CRITICAL 9.8
CVE-2022-30767

nfs_lookup_reply in net/nfs.c in Das U-Boot through 2022.04 (and through 2022.07-rc2) has an unbounded memcpy with a failed length check, leading to …

Fix: after 2022.04
Fix from $2,300 2022-05-16
Fedora CRITICAL 9.1
CVE-2022-1379

URL Restriction Bypass in GitHub repository plantuml/plantuml prior to V1.2022.5. An attacker can abuse this to bypass URL restrictions that are impo…

Fix: 1.2022.5+
Fix from $2,300 2022-05-14
Fedora MEDIUM 6.1
CVE-2022-28919

HTMLCreator release_stable_2020-07-29 was discovered to contain a cross-site scripting (XSS) vulnerability via the function _generateFilename.

No fix yet
Fix from $1,600 2022-05-12
Fedora MEDIUM 5.5
CVE-2022-1674

NULL Pointer Dereference in function vim_regexec_string at regexp.c:2733 in GitHub repository vim/vim prior to 8.2.4938. NULL Pointer Dereference in …

Fix: 8.2.4938 / 13.0+
Fix from $1,600 2022-05-12
Fedora MEDIUM 5.5
CVE-2022-1622

LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:619, allowing attackers to cause a denial-of-service via a crafted …

Fix: 9.0 / 11.7+
Fix from $1,600 2022-05-11