Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2024-22373 An out-of-bounds write vulnerability exists in the JPEG2000Codec::DecodeByStreamsCommon functionality of Mathieu Malaterre Grassroot DICOM 3.0.23. A … Fedora No fix yet Fix from $2,3002024-04-25 CRITICAL 9.8 CVE-2024-32662 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. T… Fedora 3.5.1+ Fix from $2,3002024-04-23 CRITICAL 9.8 CVE-2024-32659 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read if… Fedora 2.11.7 / 3.5.1+ Fix from $2,3002024-04-23 HIGH 7.5 CVE-2024-32660 FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.5.1, a malicious server can crash the FreeRDP client by sending i… Fedora 2.11.7 / 3.5.1+ Fix from $1,9502024-04-23 HIGH 7.5 CVE-2024-32661 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to a possible `NULL` acc… Fedora 3.5.1+ Fix from $1,9502024-04-23 CRITICAL 9.8 CVE-2024-32658 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients prior to version 3.5.1 are vulnerable to out-of-bounds read. V… Fedora 2.11.7 / 3.5.1+ Fix from $2,3002024-04-23 MEDIUM 6.5 CVE-2024-31208 Synapse is an open-source Matrix homeserver. A remote Matrix user with malicious intent, sharing a room with Synapse instances before 1.105.1, can di… Fedora 1.105.1+ Fix from $1,6002024-04-23 CRITICAL 9.8 CVE-2024-32459 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients and servers that use a version of FreeRDP prior to 3.5.0 or 2.… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 CRITICAL 9.8 CVE-2024-32460 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based based clients using `/bpp:32` legacy `GDI` drawing path with a version… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 CRITICAL 9.8 CVE-2024-32039 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients using a version of FreeRDP prior to 3.5.0 or 2.11.6 are vulner… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 CRITICAL 9.8 CVE-2024-32040 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 and hav… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 CRITICAL 9.8 CVE-2024-32041 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 CRITICAL 9.8 CVE-2024-32458 FreeRDP is a free implementation of the Remote Desktop Protocol. FreeRDP based clients that use a version of FreeRDP prior to 3.5.0 or 2.11.6 are vul… Fedora 2.11.6 / 3.5.0+ Fix from $2,3002024-04-22 HIGH 8.0 CVE-2023-50009 FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c:116:5 component. Fedora 7.0+ Fix from $1,9502024-04-19 HIGH 8.0 CVE-2023-51795 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showspectrum.… Fedora Mitigation only Fix from $1,9502024-04-19 HIGH 7.8 CVE-2023-50008 FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in libavutil/mem.c:105:9 componen… Fedora 7.0+ Fix from $1,9502024-04-19 HIGH 7.8 CVE-2023-50010 FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_encoder_id function i… Fedora 7.0+ Fix from $1,9502024-04-19 HIGH 7.8 CVE-2023-51791 Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec/jpegxl_parser.c in… Fedora Mitigation only Fix from $1,9502024-04-19 HIGH 7.8 CVE-2023-51798 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating point exception (FPE) … Fedora Patch available Fix from $1,9502024-04-19 MEDIUM 6.7 CVE-2023-51797 Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilter/avf_showwaves.c:7… Fedora Mitigation only Fix from $1,6002024-04-19 HIGH 8.8 CVE-2023-49502 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif_filter_intra_c functi… Fedora 7.0+ Fix from $1,9502024-04-19 HIGH 8.0 CVE-2023-49501 Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_output function in t… Fedora No fix yet Fix from $1,9502024-04-19 HIGH 7.5 CVE-2024-22640 TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color. Fedora after 6.7.4 Fix from $1,9502024-04-19 HIGH 8.4 CVE-2024-32462 Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. in versions before 1.10.9, 1.12.9, 1.14.6, and 1… Fedora 1.10.9 / 1.12.9+ Fix from $1,9502024-04-18 MEDIUM 6.1 CVE-2024-27306 aiohttp is an asynchronous HTTP client/server framework for asyncio and Python. A XSS vulnerability exists on index pages for static file handling. T… Fedora 3.9.4+ Fix from $1,6002024-04-18 HIGH 8.1 CVE-2023-4233 A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the sms_decode_address_field() function during… Fedora 2.1+ Fix from $1,9502024-04-17 HIGH 8.1 CVE-2023-4234 A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_submit_report() function during the… Fedora 2.1+ Fix from $1,9502024-04-17 HIGH 8.1 CVE-2023-4235 A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver_report() function during th… Fedora 2.1+ Fix from $1,9502024-04-17 HIGH 8.1 CVE-2023-4232 A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_status_report() function during the… Fedora 2.1+ Fix from $1,9502024-04-17 MEDIUM 5.3 CVE-2024-31585 FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum.c. This vulnerability allows … Fedora 7.0+ Fix from $1,6002024-04-17