fedoraproject

5,420 tracked vulnerabilities.

CVE-2024-24476 HIGH
Wireshark <4.2.0 - Buffer Overflow
Feb 21, 2024
CVSS 7.5
EPSS 0.03
CVE-2024-1676 MEDIUM
Google Chrome < 122.0.6261.57 - Security UI Spoofing via Navigation
Feb 21, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-1675 HIGH
Google Chrome < 122.0.6261.57 - Insufficient Policy Enforcement in Download
Feb 21, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-1674 HIGH
Google Chrome <122.0.6261.57 - CSRF
Feb 21, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-1673 HIGH
Google Chrome < 122.0.6261.57 - Use-After-Free in Accessibility
Feb 21, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-1672 MEDIUM
Google Chrome <122.0.6261.57 - CSRF
Feb 21, 2024
CVSS 5.4
EPSS 0.00
CVE-2024-1670 HIGH
Google Chrome < 122.0.6261.57 - Use-After-Free in Mojo via Crafted HTML Page
Feb 21, 2024
CVSS 8.8
EPSS 0.01
CVE-2024-1669 HIGH
Google Chrome < 122.0.6261.57 - Out-of-bounds Read in Blink via Crafted HTML Page
Feb 21, 2024
CVSS 8.8
EPSS 0.00
CVE-2024-23809 CRITICAL
libbiosig 2.5.0 and Master Branch - Double Free in BrainVision ASCII Header Parser
Feb 20, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-23606 CRITICAL
libbiosig 2.5.0 and Master Branch - Out-of-Bounds Write via Crafted .famos File
Feb 20, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-23313 CRITICAL
libbiosig 2.5.0 and Master Branch - Integer Underflow in sopen_FAMOS_read
Feb 20, 2024
CVSS 9.8
EPSS 0.02
CVE-2024-23310 CRITICAL
libbiosig 2.5.0 and Master Branch - Use-After-Free in sopen_FAMOS_read
Feb 20, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-23305 CRITICAL
libbiosig 2.5.0 and Master Branch - Out-of-bounds Write in BrainVisionMarker Parsing
Feb 20, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-22097 CRITICAL
The Biosig Project <2.5.0 - Use After Free
Feb 20, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-21812 CRITICAL
libbiosig 2.5.0 and Master Branch - Integer Overflow in sopen_FAMOS_read
Feb 20, 2024
CVSS 9.8
EPSS 0.00
CVE-2024-21795 CRITICAL
libbiosig 2.5.0 and Master Branch - Heap-based Buffer Overflow in .egi File Parsing
Feb 20, 2024
CVSS 9.8
EPSS 0.01
CVE-2024-26134 HIGH
cbor2 5.5.1-5.6.1 - Denial of Service via Long CBOR Object
Feb 19, 2024
CVSS 7.5
EPSS 0.01
CVE-2024-25983 LOW
moodle 4.1.0-4.1.8 and 4.3.0-4.3.2 - Authorization Bypass in Comments Block Web Service
Feb 19, 2024
CVSS 3.5
EPSS 0.00
CVE-2024-25982 MEDIUM
moodle 4.1.0-4.1.8 and 4.3.0-4.3.2 - Cross-Site Request Forgery via Language Pack Update Link
Feb 19, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-25981 MEDIUM
moodle 4.1.0-4.1.8, 4.3.0-4.3.2 - Improper Access Control in Forum Export
Feb 19, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-25980 MEDIUM
moodle 4.1.0-4.1.8, 4.3.0-4.3.2 - Improper Access Control in H5P Attempts Report
Feb 19, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-25979 MEDIUM
Moodle Forum Search - URL Parameter Restriction Bypass
Feb 19, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-25978 HIGH
moodle 4.1.0-4.1.8 and 4.3.0-4.3.2 - Denial of Service via File Picker Unzip Functionality
Feb 19, 2024
CVSS 7.5
EPSS 0.00
CVE-2024-1597 CRITICAL
PostgreSQL JDBC Driver < 42.2.28 - SQL Injection via PreferQueryMode=SIMPLE
Feb 19, 2024
CVSS 10.0
EPSS 0.00
CVE-2024-1580 MEDIUM
dav1d < 1.4.0 - Integer Overflow in AV1 Decoder
Feb 19, 2024
CVSS 5.9
EPSS 0.01