Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora CRITICAL 9.8
CVE-2024-22373

An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A …

No fix yet
Fix from $2,300 2024-04-25
Fedora CRITICAL 9.8
CVE-2024-32662

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. T…

Fix: 3.5.1+
Fix from $2,300 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32659

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if…

Fix: 2.11.7 / 3.5.1+
Fix from $2,300 2024-04-23
Fedora HIGH 7.5
CVE-2024-32660

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.5.1, a malicious server can crash the FreeRDP client by sending i…

Fix: 2.11.7 / 3.5.1+
Fix from $1,950 2024-04-23
Fedora HIGH 7.5
CVE-2024-32661

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to a possible `NULL` acc…

Fix: 3.5.1+
Fix from $1,950 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32658

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. V…

Fix: 2.11.7 / 3.5.1+
Fix from $2,300 2024-04-23
Fedora MEDIUM 6.5
CVE-2024-31208

Synapse is an open-source Matrix homeserver. A remote Matrix user with malicious intent, sharing a room with Synapse instances before 1.105.1, can di…

Fix: 1.105.1+
Fix from $1,600 2024-04-23
Fedora CRITICAL 9.8
CVE-2024-32459

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients and servers that use a version of FreeRDP prior to 3.5.0 or 2.…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32460

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based based clients using `/bpp:32` legacy `GDI` drawing path with a version…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32039

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulner…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32040

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 and hav…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32041

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora CRITICAL 9.8
CVE-2024-32458

FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul…

Fix: 2.11.6 / 3.5.0+
Fix from $2,300 2024-04-22
Fedora HIGH 8.0
CVE-2023-50009

FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5 component.

Fix: 7.0+
Fix from $1,950 2024-04-19
Fedora HIGH 8.0
CVE-2023-51795

Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showspectrum.…

Mitigation only
Fix from $1,950 2024-04-19
Fedora HIGH 7.8
CVE-2023-50008

FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in libavutil/mem.c:105:9 componen…

Fix: 7.0+
Fix from $1,950 2024-04-19
Fedora HIGH 7.8
CVE-2023-50010

FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id function i…

Fix: 7.0+
Fix from $1,950 2024-04-19
Fedora HIGH 7.8
CVE-2023-51791

Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec/jpegxl_parser.c in…

Mitigation only
Fix from $1,950 2024-04-19
Fedora HIGH 7.8
CVE-2023-51798

Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating point exception (FPE) …

Patch available
Fix from $1,950 2024-04-19
Fedora MEDIUM 6.7
CVE-2023-51797

Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showwaves.c:7…

Mitigation only
Fix from $1,600 2024-04-19
Fedora HIGH 8.8
CVE-2023-49502

Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif_filter_intra_c functi…

Fix: 7.0+
Fix from $1,950 2024-04-19
Fedora HIGH 8.0
CVE-2023-49501

Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_output function in t…

No fix yet
Fix from $1,950 2024-04-19
Fedora HIGH 7.5
CVE-2024-22640

TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.

Fix: after 6.7.4
Fix from $1,950 2024-04-19
Fedora HIGH 8.4
CVE-2024-32462

Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. in versions before 1.10.9, 1.12.9, 1.14.6, and 1…

Fix: 1.10.9 / 1.12.9+
Fix from $1,950 2024-04-18
Fedora MEDIUM 6.1
CVE-2024-27306

aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. A XSS vulnerability exists on index pages for static file handling. T…

Fix: 3.9.4+
Fix from $1,600 2024-04-18
Fedora HIGH 8.1
CVE-2023-4233

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the sms_decode_address_field() function during…

Fix: 2.1+
Fix from $1,950 2024-04-17
Fedora HIGH 8.1
CVE-2023-4234

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_submit_report() function during the…

Fix: 2.1+
Fix from $1,950 2024-04-17
Fedora HIGH 8.1
CVE-2023-4235

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver_report() function during th…

Fix: 2.1+
Fix from $1,950 2024-04-17
Fedora HIGH 8.1
CVE-2023-4232

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_status_report() function during the…

Fix: 2.1+
Fix from $1,950 2024-04-17
Fedora MEDIUM 5.3
CVE-2024-31585

FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum.c. This vulnerability allows …

Fix: 7.0+
Fix from $1,600 2024-04-17