Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.8 CVE-2021-30498 A flaw was found in libcaca. A heap buffer overflow in export.c in function export_tga might lead to memory corruption and other potential consequenc… Fedora No fix yet Fix from $1,9502021-05-26 HIGH 7.1 CVE-2021-3561 An Out of Bounds flaw was found fig2dev version 3.2.8a. A flawed bounds check in read_objects() could allow an attacker to provide a crafted maliciou… Fedora Patch available Fix from $1,9502021-05-26 MEDIUM 5.5 CVE-2021-30469 A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of service via a crafted PDF file. Fedora Patch available Fix from $1,6002021-05-26 HIGH 7.4 CVE-2021-25217EPSS 6% In ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16, ISC DHCP 4.4.0 -> 4.4.2 (Other branches of ISC DHCP (i.e., releases in the 4.0.x series or lower and releases … Fedora 2.15.0+ Fix from $1,9502021-05-26 MEDIUM 6.8 CVE-2021-31924 Yubico pam-u2f before 1.1.1 has a logic issue that, depending on the pam-u2f configuration and the application used, could lead to a local PIN bypass… Fedora 1.1.1+ Fix from $1,6002021-05-26 CRITICAL 9.8 CVE-2021-33574 The mq_notify function in the GNU C Library (aka glibc) versions 2.32 and 2.33 has a use-after-free. It may use the notification thread attributes ob… Fedora after 11.70.1 Fix from $2,3002021-05-25 MEDIUM 5.4 CVE-2020-26555 Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD… Fedora after 5.2 Fix from $1,6002021-05-24 HIGH 8.8 CVE-2021-33477 rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape… Fedora Patch available Fix from $1,9502021-05-20 HIGH 7.5 CVE-2021-3480 A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticat… Fedora 0.56.7+ Fix from $1,9502021-05-20 HIGH 7.5 CVE-2021-20718 mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified vectors. Fedora 21.3+ Fix from $1,9502021-05-20 HIGH 7.5 CVE-2021-3445 A flaw was found in libdnf's signature verification functionality in versions before 0.60.1. This flaw allows an attacker to achieve code execution i… Fedora 0.60.1+ Fix from $1,9502021-05-19 MEDIUM 5.5 CVE-2020-23856 Use-after-Free vulnerability in cflow 1.6 in the void call(char *name, int line) function at src/parser.c, which could cause a denial of service via … Fedora No fix yet Fix from $1,6002021-05-18 MEDIUM 5.5 CVE-2021-32617 Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An inefficient algorithm (… Fedora 0.27.4+ Fix from $1,6002021-05-17 CRITICAL 9.1 CVE-2021-3402 An integer overflow and several buffer overflow reads in libyara/modules/macho/macho.c in YARA v4.0.3 and earlier could allow an attacker to either c… Fedora 4.0.4+ Fix from $2,3002021-05-14 HIGH 7.1 CVE-2020-24119 A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not perfect. Fedora Patch available Fix from $1,9502021-05-14 MEDIUM 5.5 CVE-2021-32613 In radare2 through 5.3.0 there is a double free vulnerability in the pyc parse via a crafted file which can lead to DoS. Fedora after 5.3.0 Fix from $1,6002021-05-14 HIGH 7.5 CVE-2021-29510 Pydantic is a data validation and settings management using Python type hinting. In affected versions passing either `'infinity'`, `'inf'` or `float(… Fedora 1.6.2 / 1.7.4+ Fix from $1,9502021-05-13 MEDIUM 5.9 CVE-2021-32921 An issue was discovered in Prosody before 0.11.9. It does not use a constant-time algorithm for comparing certain secret strings when running under L… Fedora 0.11.9+ Fix from $1,6002021-05-13 HIGH 7.8 CVE-2020-27823 A flaw was found in OpenJPEG’s encoder. This flaw allows an attacker to pass specially crafted x,y offset input to OpenJPEG to use during encoding. T… Fedora 2.4.0+ Fix from $1,9502021-05-13 MEDIUM 6.5 CVE-2020-25713 A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_common. Fedora Patch available Fix from $1,6002021-05-13 HIGH 8.8 CVE-2021-31215 SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser because use of a PrologSlurmctld or… Fedora 20.02.7 / 20.11.7+ Fix from $1,9502021-05-13 HIGH 7.3 CVE-2021-31204 .NET and Visual Studio Elevation of Privilege Vulnerability Fedora 16.4.22 / 16.7.15+ Fix from $1,9502021-05-11 MEDIUM 5.3 CVE-2021-29471 Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for open federated Instant Messaging… Fedora 1.33.2+ Fix from $1,6002021-05-11 MEDIUM 6.1 CVE-2020-13529 An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP … Fedora No fix yet Fix from $1,6002021-05-10 MEDIUM 5.3 CVE-2021-21419 Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending very large websocket frames. … Fedora 0.31.0+ Fix from $1,6002021-05-07 CRITICAL 9.8 CVE-2021-30473 aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap. Fedora 2021-04-07+ Fix from $2,3002021-05-06 MEDIUM 5.3 CVE-2021-32062 MapServer before 7.0.8, 7.1.x and 7.2.x before 7.2.3, 7.3.x and 7.4.x before 7.4.5, and 7.5.x and 7.6.x before 7.6.3 does not properly enforce the MS… Fedora 7.0.8 / 7.2.3+ Fix from $1,6002021-05-06 MEDIUM 6.8 CVE-2021-20254 A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs thi… Fedora 4.12.15 / 4.13.8+ Fix from $1,6002021-05-05 CRITICAL 9.8 CVE-2021-31800EPSS 19% Multiple path traversal vulnerabilities exist in smbserver.py in Impacket through 0.9.22. An attacker that connects to a running smbserver instance c… Fedora after 0.9.22 Fix from $2,3002021-05-05 HIGH 7.8 CVE-2021-29464 Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. A heap buffer overflow was… Fedora 0.27.4+ Fix from $1,9502021-04-30