Vulnerability index

Browse CVEs

1,897 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.0 CVE-2023-41914 SchedMD Slurm 23.02.x before 23.02.6 and 22.05.x before 22.05.10 allows filesystem race conditions for gaining ownership of a file, overwriting a fil… Fedora 22.05.10 / 23.02.6+ Fix from $1,9502023-11-03 MEDIUM 5.3 CVE-2023-43796 Synapse is an open-source Matrix homeserver Prior to versions 1.95.1 and 1.96.0rc1, cached device information of remote users can be queried from Syn… Fedora 1.95.1+ Fix from $1,6002023-10-31 HIGH 8.8 CVE-2023-5686 Heap-based Buffer Overflow in GitHub repository radareorg/radare2 prior to 5.9.0. Fedora 5.9.0+ Fix from $1,9502023-10-20 CRITICAL 9.8 CVE-2023-38545EPSS 78% This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host name to the SOCKS5 proxy … Fedora 8.4.0 / 10.0.17763.5122+ Fix from $2,3002023-10-18 HIGH 7.8 CVE-2023-5535 Use After Free in GitHub repository vim/vim prior to v9.0.2010. Fedora 9.0.2010+ Fix from $1,9502023-10-11 MEDIUM 5.5 CVE-2023-43788 A vulnerability was found in libXpm due to a boundary condition within the XpmCreateXpmImageFromBuffer() function. This flaw allows a local attacker … Fedora 3.5.17+ Fix from $1,6002023-10-10 HIGH 8.8 CVE-2023-43641EPSS 17% libcue provides an API for parsing and extracting data from CUE sheets. Versions 2.2.1 and prior are vulnerable to out-of-bounds array access. A user… Fedora 2.3.0+ Fix from $1,9502023-10-09 HIGH 7.5 CVE-2023-43615 Mbed TLS 2.x before 2.28.5 and 3.x before 3.5.0 has a Buffer Overflow. Fedora 2.28.5 / 3.5.0+ Fix from $1,9502023-10-07 CRITICAL 9.8 CVE-2023-45239 A lack of input validation exists in tac_plus prior to commit 4fdf178 which, when pre or post auth commands are enabled, allows an attacker who can c… Fedora 2023-10-05+ Fix from $2,3002023-10-06 MEDIUM 5.5 CVE-2023-5441 NULL Pointer Dereference in GitHub repository vim/vim prior to 20d161ace307e28690229b68584f2d84556f8960. Fedora 9.0.1994+ Fix from $1,6002023-10-05 MEDIUM 6.5 CVE-2023-40745 LibTIFF is vulnerable to an integer overflow. This flaw allows remote attackers to cause a denial of service (application crash) or possibly execute … Fedora 4.6.0+ Fix from $1,6002023-10-05 MEDIUM 6.5 CVE-2023-41175 A vulnerability was found in libtiff due to multiple potential integer overflows in raw2tiff.c. This flaw allows remote attackers to cause a denial o… Fedora 4.6.0+ Fix from $1,6002023-10-05 MEDIUM 5.5 CVE-2023-3428 A heap-based buffer overflow vulnerability was found in coders/tiff.c in ImageMagick. This issue may allow a local attacker to trick the user into o… Fedora 7.1.1-19+ Fix from $1,6002023-10-04 MEDIUM 5.5 CVE-2023-3576 A memory leak flaw was found in Libtiff's tiffcrop utility. This issue occurs when tiffcrop operates on a TIFF image file, allowing an attacker to pa… Fedora 4.5.1+ Fix from $1,6002023-10-04 HIGH 7.8 CVE-2023-4911 KEVEPSS 81% A buffer overflow was discovered in the GNU C Library's dynamic loader ld.so while processing the GLIBC_TUNABLES environment variable. This issue cou… Fedora Patch available Fix from $1,9502023-10-03 HIGH 7.5 CVE-2023-5344 Heap-based Buffer Overflow in GitHub repository vim/vim prior to 9.0.1969. Fedora 9.0.1969+ Fix from $1,9502023-10-02 MEDIUM 6.5 CVE-2023-42822 xrdp is an open source remote desktop protocol server. Access to the font glyphs in xrdp_painter.c is not bounds-checked . Since some of this data is… Fedora 0.9.23.1+ Fix from $1,6002023-09-27 MEDIUM 5.5 CVE-2023-43090 A vulnerability was found in GNOME Shell. GNOME Shell's lock screen allows an unauthenticated local user to view windows of the locked desktop sessio… Fedora 43.9 / 44.5+ Fix from $1,6002023-09-22 HIGH 8.8 CVE-2023-41993 KEVEPSS 29% The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Ap… Fedora 14.0 / 17.0.1+ Fix from $1,9502023-09-21 HIGH 7.5 CVE-2023-4236 A flaw in the networking code handling DNS-over-TLS queries may cause `named` to terminate unexpectedly due to an assertion failure. This happens whe… Fedora 9.18.18+ Fix from $1,9502023-09-20 HIGH 7.5 CVE-2023-3341 The code that processes control channel messages sent to `named` calls certain functions recursively during packet parsing. Recursion depth is only l… Fedora 9.16.44 / 9.18.19+ Fix from $1,9502023-09-20 HIGH 8.8 CVE-2023-43115 In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can swi… Fedora after 10.01.2 Fix from $1,9502023-09-18 MEDIUM 5.5 CVE-2023-40032 libvips is a demand-driven, horizontally threaded image processing library. A specially crafted SVG input can cause libvips versions 8.14.3 or earlie… Fedora 8.14.4+ Fix from $1,6002023-09-11 HIGH 8.1 CVE-2023-41915 OpenPMIx PMIx before 4.2.6 and 5.0.x before 5.0.1 allows attackers to obtain ownership of arbitrary files via a race condition during execution of li… Fedora 4.2.6+ Fix from $1,9502023-09-09 MEDIUM 6.3 CVE-2023-39365 Cacti is an open source operational monitoring and fault management framework. Issues with Cacti Regular Expression validation combined with the exte… Fedora 1.2.25+ Fix from $1,6002023-09-05 HIGH 8.8 CVE-2023-39357 Cacti is an open source operational monitoring and fault management framework. A defect in the sql_save function was discovered. When the column type… Fedora No fix yet Fix from $1,9502023-09-05 HIGH 8.8 CVE-2023-39358 Cacti is an open source operational monitoring and fault management framework. An authenticated SQL injection vulnerability was discovered which allo… Fedora 1.2.25+ Fix from $1,9502023-09-05 HIGH 7.2 CVE-2023-39362EPSS 82% Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, under certain conditions, an authenticated privileged… Fedora 1.2.25+ Fix from $1,9502023-09-05 MEDIUM 5.4 CVE-2023-39364 Cacti is an open source operational monitoring and fault management framework. In Cacti 1.2.24, users with console access can be redirected to an arb… Fedora No fix yet Fix from $1,6002023-09-05 MEDIUM 5.4 CVE-2023-39513 Cacti is an open source operational monitoring and fault management framework. Affected versions are subject to a Stored Cross-Site-Scripting (XSS) V… Fedora 1.2.25+ Fix from $1,6002023-09-05