Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora MEDIUM 6.5
CVE-2021-3658

bluetoothd from bluez incorrectly saves adapters' Discoverable status when a device is powered down, and restores it when powered up. If a device is …

Fix: 5.61+
Fix from $1,600 2022-03-02
Fedora HIGH 7.5
CVE-2022-23308EPSS 6%

valid.c in libxml2 before 2.9.13 has a use-after-free of ID and IDREF attributes.

Fix: 2.9.13 / 10.15.7+
Fix from $1,950 2022-02-26
Fedora HIGH 7.8
CVE-2022-0546

A missing bounds check in the image loader used in Blender 3.x and 2.93.8 leads to out-of-bounds heap access, allowing an attacker to cause denial of…

Patch available
Fix from $1,950 2022-02-24
Fedora HIGH 7.5
CVE-2021-3610

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is…

Fix: 6.9.12-14 / 7.0.11-14+
Fix from $1,950 2022-02-24
Fedora HIGH 7.8
CVE-2019-25058

An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user could make USBGuard allow al…

Fix: 1.1.0+
Fix from $1,950 2022-02-24
Fedora HIGH 7.5
CVE-2021-25636

LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alteration of the document occur…

Fix: 7.2.5+
Fix from $1,950 2022-02-24
Fedora MEDIUM 5.5
CVE-2022-0695

Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4.

Fix: 5.6.4+
Fix from $1,600 2022-02-24
Fedora MEDIUM 5.5
CVE-2022-0476

Denial of Service in GitHub repository radareorg/radare2 prior to 5.6.4.

Fix: 5.6.4+
Fix from $1,600 2022-02-23
Fedora HIGH 8.8
CVE-2022-0729

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4440.

Fix: 8.2.4440 / 13.0+
Fix from $1,950 2022-02-23
Fedora MEDIUM 5.5
CVE-2022-0714EPSS 12%

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.4436.

Fix: 13.0+
Fix from $1,600 2022-02-22
Fedora HIGH 7.1
CVE-2022-0713

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.

Fix: 5.6.4+
Fix from $1,950 2022-02-22
Fedora MEDIUM 5.5
CVE-2022-0712

NULL Pointer Dereference in GitHub repository radareorg/radare2 prior to 5.6.4.

Fix: 5.6.4+
Fix from $1,600 2022-02-22
Fedora HIGH 7.8
CVE-2022-0676

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.6.4.

Fix: 5.6.4+
Fix from $1,950 2022-02-22
Fedora MEDIUM 5.5
CVE-2022-0696

NULL Pointer Dereference in GitHub repository vim/vim prior to 8.2.4428.

Fix: 8.2.4428 / 13.0+
Fix from $1,600 2022-02-21
Fedora HIGH 7.1
CVE-2021-45083

An issue was discovered in Cobbler before 3.3.1. Files in /etc/cobbler are world readable. Two of those files contain some sensitive information that…

Fix: 3.3.1+
Fix from $1,950 2022-02-20
Fedora HIGH 7.8
CVE-2022-0685

Use of Out-of-range Pointer Offset in GitHub repository vim/vim prior to 8.2.4418.

Fix: 8.2.4418 / 13.0+
Fix from $1,950 2022-02-20
Fedora HIGH 7.8
CVE-2021-45082

An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_invalid_imports can allow Cheetah code to import Pyth…

Fix: 3.3.1+
Fix from $1,950 2022-02-19
Fedora CRITICAL 9.8
CVE-2021-3657

A flaw was found in mbsync versions prior to 1.4.4. Due to inadequate handling of extremely large (>=2GiB) IMAP literals, malicious or compromised IM…

Fix: 1.4.4+
Fix from $2,300 2022-02-18
Fedora HIGH 8.8
CVE-2020-25718

A flaw was found in the way samba, as an Active Directory Domain Controller, is able to support an RODC (read-only domain controller). This would all…

Fix: 4.13.14 / 4.14.10+
Fix from $1,950 2022-02-18
Fedora HIGH 7.8
CVE-2022-0629

Stack-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4397 / 13.0+
Fix from $1,950 2022-02-17
Fedora CRITICAL 9.9
CVE-2021-3781EPSS 84%

A trivial sandbox (enabled with the `-dSAFER` option) escape flaw was found in the ghostscript interpreter by injecting a specially crafted pipe comm…

Patch available
Fix from $2,300 2022-02-16
Fedora HIGH 7.8
CVE-2021-3578

A flaw was found in mbsync before v1.3.6 and v1.4.2, where an unchecked pointer cast allows a malicious or compromised server to write an arbitrary i…

Fix: 1.3.6+
Fix from $1,950 2022-02-16
Fedora HIGH 7.8
CVE-2022-23803

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadXYCoord coordinate parsing functionality of KiCad EDA…

No fix yet
Fix from $1,950 2022-02-16
Fedora HIGH 7.8
CVE-2022-23804

A stack-based buffer overflow vulnerability exists in the Gerber Viewer gerber and excellon ReadIJCoord coordinate parsing functionality of KiCad EDA…

No fix yet
Fix from $1,950 2022-02-16
Fedora HIGH 7.8
CVE-2021-3551

A flaw was found in the PKI-server, where the spkispawn command, when run in debug mode, stores admin credentials in the installation log file. This …

Patch available
Fix from $1,950 2022-02-16
Fedora CRITICAL 9.8
CVE-2022-0559

Use After Free in GitHub repository radareorg/radare2 prior to 5.6.2.

Fix: 5.6.2+
Fix from $2,300 2022-02-16
Fedora MEDIUM 6.5
CVE-2022-0613

Authorization Bypass Through User-Controlled Key in NPM urijs prior to 1.19.8.

Fix: 1.19.8+
Fix from $1,600 2022-02-16
Fedora HIGH 7.8
CVE-2022-0572EPSS 27%

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 8.2.

Fix: 8.2.4359 / 13.0+
Fix from $1,950 2022-02-14
Fedora MEDIUM 6.1
CVE-2022-0571

Cross-site Scripting (XSS) - Reflected in GitHub repository phoronix-test-suite/phoronix-test-suite prior to 10.8.2.

Fix: 10.8.2+
Fix from $1,600 2022-02-14
Fedora HIGH 7.8
CVE-2021-45444

In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demonstrated by a %F argument. Thi…

Fix: 5.8.1 / 10.15.7+
Fix from $1,950 2022-02-14