Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Fedora MEDIUM 5.4
CVE-2023-39514

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) V…

Fix: 1.2.25+
Fix from $1,600 2023-09-05
Fedora CRITICAL 9.8
CVE-2023-39361EPSS 88%

Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a SQL injection discovered in graph_v…

No fix yet
Fix from $2,300 2023-09-05
Fedora HIGH 8.8
CVE-2023-39359

Cacti is an open source operational monitoring and fault management framework. An authenticated SQL injection vulnerability was discovered which allo…

Fix: 1.2.25+
Fix from $1,950 2023-09-05
Fedora MEDIUM 6.1
CVE-2023-39360

Cacti is an open source operational monitoring and fault management framework.Affected versions are subject to a Stored Cross-Site-Scripting (XSS) Vu…

No fix yet
Fix from $1,600 2023-09-05
Fedora HIGH 7.8
CVE-2023-4750

Use After Free in GitHub repository vim/vim prior to 9.0.1857.

Fix: 9.0.1857 / 14.1+
Fix from $1,950 2023-09-04
Fedora HIGH 7.8
CVE-2023-4752

Use After Free in GitHub repository vim/vim prior to 9.0.1858.

Fix: 9.0.1858 / 14.1+
Fix from $1,950 2023-09-04
Fedora HIGH 7.8
CVE-2023-4733

Use After Free in GitHub repository vim/vim prior to 9.0.1840.

Fix: 9.0.1840 / 14.1+
Fix from $1,950 2023-09-04
Fedora CRITICAL 9.8
CVE-2023-36328

Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute ar…

Fix: 1.2.1+
Fix from $2,300 2023-09-01
Fedora HIGH 7.5
CVE-2023-40589

FreeRDP is a free implementation of the Remote Desktop Protocol (RDP), released under the Apache license. In affected versions there is a Global-Buff…

Fix: 2.11.0+
Fix from $1,950 2023-08-31
Fedora CRITICAL 9.1
CVE-2023-41359

An issue was discovered in FRRouting FRR through 9.0. There is an out-of-bounds read in bgp_attr_aigp_valid in bgpd/bgp_attr.c because there is no ch…

Fix: after 9.0
Fix from $2,300 2023-08-29
Fedora HIGH 7.1
CVE-2022-48541

A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote attackers to perform a denial of service via the "identify -help" command.

No fix yet
Fix from $1,950 2023-08-22
Fedora MEDIUM 5.5
CVE-2022-48065

GNU Binutils before 2.40 was discovered to contain a memory leak vulnerability var the function find_abstract_instance in dwarf2.c.

Fix: 2.40+
Fix from $1,600 2023-08-22
Fedora MEDIUM 5.5
CVE-2022-48064

GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function bfd_dwarf2_find_nearest_line_with_a…

Fix: 2.40+
Fix from $1,600 2023-08-22
Fedora HIGH 7.1
CVE-2021-29390

libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c.

Patch available
Fix from $1,950 2023-08-22
Fedora CRITICAL 9.8
CVE-2023-4322

Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0.

Fix: after 5.8.8
Fix from $2,300 2023-08-14
Fedora MEDIUM 5.5
CVE-2023-22840

Improper neutralization in software for the Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticated user to potentially enable …

Fix: 22.6.5+
Fix from $1,600 2023-08-11
Fedora MEDIUM 6.7
CVE-2022-46329

Protection mechanism failure for some Intel(R) PROSet/Wireless WiFi software may allow a privileged user to potentially enable escalation of privileg…

Fix: 3.2.20.23023 / 22.200+
Fix from $1,600 2023-08-11
Fedora MEDIUM 5.5
CVE-2023-22338

Out-of-bounds read in some Intel(R) oneVPL GPU software before version 22.6.5 may allow an authenticated user to potentially enable information discl…

Fix: 22.6.5+
Fix from $1,600 2023-08-11
Fedora MEDIUM 6.7
CVE-2022-40964

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalat…

Fix: 3.2.20.23023 / 22.200+
Fix from $1,600 2023-08-11
Fedora HIGH 7.8
CVE-2022-38076

Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an authenticated user to potentially enable es…

Fix: 3.2.20.23023 / 22.200+
Fix from $1,950 2023-08-11
Fedora MEDIUM 6.5
CVE-2022-36351

Improper input validation in some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow an unauthenticated user to potentially enable …

Fix: 3.2.20.23023 / 22.200+
Fix from $1,600 2023-08-11
Fedora MEDIUM 6.7
CVE-2022-27635

Improper access control for some Intel(R) PROSet/Wireless WiFi and Killer(TM) WiFi software may allow a privileged user to potentially enable escalat…

Fix: 3.2.20.23023 / 22.200+
Fix from $1,600 2023-08-11
Fedora HIGH 7.5
CVE-2023-38180 KEVEPSS 15%

.NET and Visual Studio Denial of Service Vulnerability

Fix: 2.1.40 / 6.0.21+
Fix from $1,950 2023-08-08
Fedora MEDIUM 6.5
CVE-2023-4135

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the gues…

Fix: 8.1.0+
Fix from $1,600 2023-08-04
Fedora MEDIUM 6.5
CVE-2023-3180

A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no ch…

Fix: 8.1.0+
Fix from $1,600 2023-08-03
Fedora HIGH 7.8
CVE-2023-1386

A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU. When a local user in the guest writes an executable file with SUID o…

Mitigation only
Fix from $1,950 2023-07-24
Fedora MEDIUM 5.5
CVE-2023-38633

A directory traversal problem in the URL decoder of librsvg before 2.56.3 could be used by local or remote attackers to disclose files (on the local …

Fix: 2.46.6 / 2.48.11+
Fix from $1,600 2023-07-22
Fedora HIGH 7.5
CVE-2023-34966EPSS 62%

An infinite loop vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets sent by the client, t…

Fix: 4.16.11 / 4.17.10+
Fix from $1,950 2023-07-20
Fedora MEDIUM 5.3
CVE-2023-34967EPSS 61%

A Type Confusion vulnerability was found in Samba's mdssvc RPC service for Spotlight. When parsing Spotlight mdssvc RPC packets, one encoded data str…

Fix: 4.16.11 / 4.17.10+
Fix from $1,600 2023-07-20
Fedora MEDIUM 5.3
CVE-2023-34968

A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side absolute path of shares, files…

Fix: 4.16.11 / 4.17.10+
Fix from $1,600 2023-07-20