Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora MEDIUM 5.5
CVE-2022-1623

LibTIFF master branch has an out-of-bounds read in LZWDecode in libtiff/tif_lzw.c:624, allowing attackers to cause a denial-of-service via a crafted …

Patch available
Fix from $1,600 2022-05-11
Fedora HIGH 7.5
CVE-2022-29145

.NET and Visual Studio Denial of Service Vulnerability

Fix: 16.9.21 / 16.11.14+
Fix from $1,950 2022-05-10
Fedora HIGH 7.5
CVE-2022-29117EPSS 5%

.NET and Visual Studio Denial of Service Vulnerability

Fix: after 16.0.11
Fix from $1,950 2022-05-10
Fedora HIGH 7.5
CVE-2022-23267EPSS 5%

.NET and Visual Studio Denial of Service Vulnerability

Fix: 7.0.11 / 7.2.4+
Fix from $1,950 2022-05-10
Fedora HIGH 7.8
CVE-2022-1629

Buffer Over-read in function find_next_quote in GitHub repository vim/vim prior to 8.2.4925. This vulnerabilities are capable of crashing software, M…

Fix: 8.2.4925 / 13.0+
Fix from $1,950 2022-05-10
Fedora HIGH 7.5
CVE-2022-1620

NULL Pointer Dereference in function vim_regexec_string at regexp.c:2729 in GitHub repository vim/vim prior to 8.2.4901. NULL Pointer Dereference in …

Fix: 8.2.4901 / 13.0+
Fix from $1,950 2022-05-08
Fedora HIGH 7.8
CVE-2022-1619

Heap-based Buffer Overflow in function cmdline_erase_chars in GitHub repository vim/vim prior to 8.2.4899. This vulnerabilities are capable of crashi…

Fix: 8.2.4899 / 13.0+
Fix from $1,950 2022-05-08
Fedora HIGH 7.8
CVE-2022-1616

Use after free in append_command in GitHub repository vim/vim prior to 8.2.4895. This vulnerability is capable of crashing software, Bypass Protectio…

Fix: 8.2.4895 / 13.0+
Fix from $1,950 2022-05-07
Fedora CRITICAL 9.1
CVE-2022-1053

Keylime does not enforce that the agent registrar data is the same when the tenant uses it for validation of the EK and identity quote and the verifi…

Fix: 6.4.0+
Fix from $2,300 2022-05-06
Fedora HIGH 8.1
CVE-2022-24903

Rsyslog is a rocket-fast system for log processing. Modules for TCP syslog reception have a potential heap buffer overflow when octet-counted framing…

Fix: 8.2204.1+
Fix from $1,950 2022-05-06
Fedora HIGH 7.5
CVE-2022-24884

ecdsautils is a tiny collection of programs used for ECDSA (keygen, sign, verify). `ecdsa_verify_[prepare_]legacy()` does not check whether the signa…

Fix: 0.4.1+
Fix from $1,950 2022-05-06
Fedora MEDIUM 6.5
CVE-2022-27337

A logic error in the Hints::Hints function of Poppler v22.03.0 allows attackers to cause a Denial of Service (DoS) via a crafted PDF file.

No fix yet
Fix from $1,600 2022-05-05
Fedora CRITICAL 9.8
CVE-2022-29502

SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges.

Fix: 21.08.08+
Fix from $2,300 2022-05-05
Fedora HIGH 8.8
CVE-2022-29500

SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Information Disclosure.

Fix: 20.11.9 / 21.08.08+
Fix from $1,950 2022-05-05
Fedora HIGH 8.8
CVE-2022-29501

SchedMD Slurm 21.08.x through 20.11.x has Incorrect Access Control that leads to Escalation of Privileges and code execution.

Fix: 20.11.9 / 21.08.08+
Fix from $1,950 2022-05-05
Fedora CRITICAL 10.0
CVE-2022-30292

Heap-based buffer overflow in sqbaselib.cpp in SQUIRREL 3.2 due to lack of a certain sq_reservestack call.

Patch available
Fix from $2,300 2022-05-04
Fedora HIGH 7.5
CVE-2022-28487

Tcpreplay version 4.4.1 contains a memory leakage flaw in fix_ipv6_checksums() function. The highest threat from this vulnerability is to data confid…

Patch available
Fix from $1,950 2022-05-04
Fedora HIGH 7.8
CVE-2022-27470

SDL_ttf v2.0.18 and below was discovered to contain an arbitrary memory write via the function TTF_RenderText_Solid(). This vulnerability is triggere…

Fix: after 2.0.18
Fix from $1,950 2022-05-04
Fedora MEDIUM 6.5
CVE-2022-29824

In libxml2 before 2.9.14, several buffer handling functions in buf.c (xmlBuf*) and tree.c (xmlBuffer*) don't check for integer overflows. This can re…

Fix: 2.9.14+
Fix from $1,600 2022-05-03
Fedora HIGH 7.5
CVE-2022-25844

The package angular after 1.7.0 are vulnerable to Regular Expression Denial of Service (ReDoS) by providing a custom locale rule that makes it possib…

No fix yet
Fix from $1,950 2022-05-01
Fedora MEDIUM 5.3
CVE-2022-29869

cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid creden…

Fix: 6.15+
Fix from $1,600 2022-04-28
Fedora MEDIUM 5.5
CVE-2022-1507

chafa: NULL Pointer Dereference in function gif_internal_decode_frame at libnsgif.c:599 allows attackers to cause a denial of service (crash) via a c…

Fix: 1.10.2+
Fix from $1,600 2022-04-27
Fedora CRITICAL 9.8
CVE-2022-24883

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). Prior to version 2.7.0, server side authentication against a `SAM` file might …

Fix: 2.7.0+
Fix from $2,300 2022-04-26
Fedora HIGH 7.5
CVE-2022-24882

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). In versions prior to 2.7.0, NT LAN Manager (NTLM) authentication does not prop…

Fix: 2.7.0+
Fix from $1,950 2022-04-26
Fedora MEDIUM 5.5
CVE-2022-28506

There is a heap-buffer-overflow in GIFLIB 5.2.1 function DumpScreen2RGB() in gif2rgb.c:298:45.

No fix yet
Fix from $1,600 2022-04-25
Fedora CRITICAL 9.8
CVE-2022-27404

FreeType commit 1e2eb65048f75c64b68708efed6ce904c31f3b2f was discovered to contain a heap buffer overflow via the function sfnt_init_face.

Fix: 2.12.0+
Fix from $2,300 2022-04-22
Fedora HIGH 7.5
CVE-2022-27405

FreeType commit 53dfdcd8198d2b3201a23c4bad9190519ba918db was discovered to contain a segmentation violation via the function FNT_Size_Request.

Fix: 2.12.0+
Fix from $1,950 2022-04-22
Fedora HIGH 7.5
CVE-2022-27406

FreeType commit 22a0cccb4d9d002f33c1ba7a4b36812c7d4f46b5 was discovered to contain a segmentation violation via the function FT_Request_Size.

Fix: 2.12.0+
Fix from $1,950 2022-04-22
Fedora MEDIUM 5.5
CVE-2022-1420

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4774.

Fix: 8.2.4774 / 13.0+
Fix from $1,600 2022-04-21
Fedora HIGH 7.5
CVE-2022-29536

In GNOME Epiphany before 41.4 and 42.x before 42.2, an HTML document can trigger a client buffer overflow (in ephy_string_shorten in the UI process) …

Fix: 41.4 / 42.2+
Fix from $1,950 2022-04-20