Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora HIGH 7.0
CVE-2023-41914

SchedMD Slurm 23.02.x before 23.02.6 and 22.05.x before 22.05.10 allows filesystem race conditions for gaining ownership of a file, overwriting a fil…

Fix: 22.05.10 / 23.02.6+
Fix from $1,950 2023-11-03
Fedora MEDIUM 5.3
CVE-2023-43796

Synapse is an open-source Matrix homeserver Prior to versions 1.95.1 and 1.96.0rc1, cached device information of remote users can be queried from Syn…

Fix: 1.95.1+
Fix from $1,600 2023-10-31
Fedora HIGH 8.8
CVE-2023-5686

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.

Fix: 5.9.0+
Fix from $1,950 2023-10-20
Fedora CRITICAL 9.8
CVE-2023-38545EPSS 78%

This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy …

Fix: 8.4.0 / 10.0.17763.5122+
Fix from $2,300 2023-10-18
Fedora HIGH 7.8
CVE-2023-5535

Use After Free in GitHub repository vim/vim prior to v9.0.2010.

Fix: 9.0.2010+
Fix from $1,950 2023-10-11
Fedora MEDIUM 5.5
CVE-2023-43788

A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker …

Fix: 3.5.17+
Fix from $1,600 2023-10-10
Fedora HIGH 8.8
CVE-2023-43641EPSS 17%

libcue provides an API for parsing and extracting data from CUE sheets. Versions 2.2.1 and prior are vulnerable to out-of-bounds array access. A user…

Fix: 2.3.0+
Fix from $1,950 2023-10-09
Fedora HIGH 7.5
CVE-2023-43615

Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow.

Fix: 2.28.5 / 3.5.0+
Fix from $1,950 2023-10-07
Fedora CRITICAL 9.8
CVE-2023-45239

A lack of input validation exists in tac_plus prior to commit 4fdf178 which, when pre or post auth commands are enabled, allows an attacker who can c…

Fix: 2023-10-05+
Fix from $2,300 2023-10-06
Fedora MEDIUM 5.5
CVE-2023-5441

NULL Pointer Dereference in GitHub repository vim/vim prior to 20d161ace307e28690229b68584f2d84556f8960.

Fix: 9.0.1994+
Fix from $1,600 2023-10-05
Fedora MEDIUM 6.5
CVE-2023-40745

LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute …

Fix: 4.6.0+
Fix from $1,600 2023-10-05
Fedora MEDIUM 6.5
CVE-2023-41175

A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial o…

Fix: 4.6.0+
Fix from $1,600 2023-10-05
Fedora MEDIUM 5.5
CVE-2023-3428

A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local attacker to trick the user into o…

Fix: 7.1.1-19+
Fix from $1,600 2023-10-04
Fedora MEDIUM 5.5
CVE-2023-3576

A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pa…

Fix: 4.5.1+
Fix from $1,600 2023-10-04
Fedora HIGH 7.8
CVE-2023-4911 KEVEPSS 81%

A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue cou…

Patch available
Fix from $1,950 2023-10-03
Fedora HIGH 7.5
CVE-2023-5344

Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969.

Fix: 9.0.1969+
Fix from $1,950 2023-10-02
Fedora MEDIUM 6.5
CVE-2023-42822

xrdp is an open source remote desktop protocol server. Access to the font glyphs in xrdp_painter.c is not bounds-checked . Since some of this data is…

Fix: 0.9.23.1+
Fix from $1,600 2023-09-27
Fedora MEDIUM 5.5
CVE-2023-43090

A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows of the locked desktop sessio…

Fix: 43.9 / 44.5+
Fix from $1,600 2023-09-22
Fedora HIGH 8.8
CVE-2023-41993 KEVEPSS 29%

The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Ap…

Fix: 14.0 / 17.0.1+
Fix from $1,950 2023-09-21
Fedora HIGH 7.5
CVE-2023-4236

A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assertion failure. This happens whe…

Fix: 9.18.18+
Fix from $1,950 2023-09-20
Fedora HIGH 7.5
CVE-2023-3341

The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsing. Recursion depth is only l…

Fix: 9.16.44 / 9.18.19+
Fix from $1,950 2023-09-20
Fedora HIGH 8.8
CVE-2023-43115

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can swi…

Fix: after 10.01.2
Fix from $1,950 2023-09-18
Fedora MEDIUM 5.5
CVE-2023-40032

libvips is a demand-driven, horizontally threaded image processing library. A specially crafted SVG input can cause libvips versions 8.14.3 or earlie…

Fix: 8.14.4+
Fix from $1,600 2023-09-11
Fedora HIGH 8.1
CVE-2023-41915

OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of li…

Fix: 4.2.6+
Fix from $1,950 2023-09-09
Fedora MEDIUM 6.3
CVE-2023-39365

Cacti is an open source operational monitoring and fault management framework. Issues with Cacti Regular Expression validation combined with the exte…

Fix: 1.2.25+
Fix from $1,600 2023-09-05
Fedora HIGH 8.8
CVE-2023-39357

Cacti is an open source operational monitoring and fault management framework. A defect in the sql_save function was discovered. When the column type…

No fix yet
Fix from $1,950 2023-09-05
Fedora HIGH 8.8
CVE-2023-39358

Cacti is an open source operational monitoring and fault management framework. An authenticated SQL injection vulnerability was discovered which allo…

Fix: 1.2.25+
Fix from $1,950 2023-09-05
Fedora HIGH 7.2
CVE-2023-39362EPSS 82%

Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, under certain conditions, an authenticated privileged…

Fix: 1.2.25+
Fix from $1,950 2023-09-05
Fedora MEDIUM 5.4
CVE-2023-39364

Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, users with console access can be redirected to an arb…

No fix yet
Fix from $1,600 2023-09-05
Fedora MEDIUM 5.4
CVE-2023-39513

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) V…

Fix: 1.2.25+
Fix from $1,600 2023-09-05